Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2001-1556

Опубликовано: 31 дек. 2001
Источник: redhat
CVSS3: 3.3

Описание

The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.

Отчет

This is a duplicate CVE name and is a combination of CVE-2003-0020 and CVE-2003-0083.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5httpdNot affected
Red Hat Enterprise Linux 6httpdNot affected
Red Hat Enterprise Linux 7httpdNot affected
Red Hat Enterprise Linux 8httpd:2.4/httpdNot affected
Red Hat JBoss Core ServiceshttpdNot affected
Red Hat JBoss Enterprise Web Server 2httpdNot affected
Red Hat JBoss Enterprise Web Server 2httpd22Not affected
Red Hat Software Collectionshttpd24-httpdNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-532
https://bugzilla.redhat.com/show_bug.cgi?id=1891833httpd: log files contain information directly supplied by clients and does not filter or quote control characters

3.3 Low

CVSS3

Связанные уязвимости

nvd
больше 23 лет назад

The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.

debian
больше 23 лет назад

The log files in Apache web server contain information directly suppli ...

github
больше 3 лет назад

The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.

3.3 Low

CVSS3