Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-44119

Опубликовано: 08 июн. 2026
Источник: debian
EPSS Низкий

Описание

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP Server: from through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
apache2fixed2.4.68-1package
apache2fixed2.4.68-1~deb13u1trixiepackage
apache2fixed2.4.68-1~deb12u1bookwormpackage

Примечания

  • https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2026-44119

  • Fixed by: https://github.com/apache/httpd/commit/f63f26aff6aa747357b84b5bd09c45325fa7f9ba (2.4.68-rc1-candidate)

EPSS

Процентиль: 7%
0.00171
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 2 месяцев назад

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP Server: from through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

CVSS3: 5.5
redhat
около 2 месяцев назад

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP Server: from through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

CVSS3: 5.5
nvd
около 2 месяцев назад

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP Server: from through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

msrc
около 2 месяцев назад

Apache HTTP Server: escalation of privilege through expressions in .htaccess in multiple modules

CVSS3: 5.5
redos
4 дня назад

Уязвимость httpd

EPSS

Процентиль: 7%
0.00171
Низкий