Описание
htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink attack.
Ссылки
- Third Party Advisory
- PatchThird Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- PatchThird Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:apache:http_server:1.3.14:*:*:*:*:*:*:*
cpe:2.3:a:apache:http_server:2.0:alpha9:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*
EPSS
Процентиль: 31%
0.00114
Низкий
3.3 Low
CVSS2
Дефекты
CWE-59
Связанные уязвимости
CVSS3: 2.9
redhat
больше 24 лет назад
htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink attack.
debian
больше 24 лет назад
htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local ...
github
около 3 лет назад
htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink attack.
EPSS
Процентиль: 31%
0.00114
Низкий
3.3 Low
CVSS2
Дефекты
CWE-59