Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fm8w-r4qw-vq3r

Опубликовано: 08 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.

This issue affects Apache HTTP Server: from through 2.4.67.

Users are recommended to upgrade to version 2.4.68, which fixes the issue.

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.

This issue affects Apache HTTP Server: from through 2.4.67.

Users are recommended to upgrade to version 2.4.68, which fixes the issue.

EPSS

Процентиль: 7%
0.00177
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 5.5
ubuntu
3 месяца назад

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP Server: from through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

CVSS3: 5.5
redhat
3 месяца назад

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP Server: from through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

CVSS3: 5.5
nvd
3 месяца назад

Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP Server: from through 2.4.67. Users are recommended to upgrade to version 2.4.68, which fixes the issue.

msrc
3 месяца назад

Apache HTTP Server: escalation of privilege through expressions in .htaccess in multiple modules

CVSS3: 5.5
debian
3 месяца назад

Improper Privilege Management vulnerability in Apache HTTP Server 2.4. ...

EPSS

Процентиль: 7%
0.00177
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-269