Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-644r-w2gh-w38h

Опубликовано: 08 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

A path handling issue in mod_dav_fs in Apache 2.4.67 and earlier allows a WebDAV content author to directly manipulate trusted DAV property databases, potentially causing child process crashes.

Users are recommended to upgrade to version 2.4.68, which fixes this issue.

A path handling issue in mod_dav_fs in Apache 2.4.67 and earlier allows a WebDAV content author to directly manipulate trusted DAV property databases, potentially causing child process crashes.

Users are recommended to upgrade to version 2.4.68, which fixes this issue.

EPSS

Процентиль: 42%
0.00538
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-668

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 2 месяцев назад

A path handling issue in mod_dav_fs in Apache 2.4.67 and earlier allows a WebDAV content author to directly manipulate trusted DAV property databases, potentially causing child process crashes. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

CVSS3: 6.5
redhat
около 2 месяцев назад

A path handling issue in mod_dav_fs in Apache 2.4.67 and earlier allows a WebDAV content author to directly manipulate trusted DAV property databases, potentially causing child process crashes. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

CVSS3: 9.1
nvd
около 2 месяцев назад

A path handling issue in mod_dav_fs in Apache 2.4.67 and earlier allows a WebDAV content author to directly manipulate trusted DAV property databases, potentially causing child process crashes. Users are recommended to upgrade to version 2.4.68, which fixes this issue.

msrc
около 2 месяцев назад

Apache HTTP Server: mod_dav_fs protected directory access

CVSS3: 9.1
debian
около 2 месяцев назад

A path handling issue in mod_dav_fs in Apache 2.4.67 and earlierallows ...

EPSS

Процентиль: 42%
0.00538
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-668