Логотип exploitDog
bind:"CVE-2014-0226" OR bind:"CVE-2014-0118" OR bind:"CVE-2014-0231"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2014-0226" OR bind:"CVE-2014-0118" OR bind:"CVE-2014-0231"

Количество 22

Количество 22

oracle-oval логотип

ELSA-2014-0920

больше 11 лет назад

ELSA-2014-0920: httpd security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2014-0921

больше 11 лет назад

ELSA-2014-0921: httpd security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2014-0226

больше 11 лет назад

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
EPSS: Высокий
redhat логотип

CVE-2014-0226

больше 11 лет назад

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
EPSS: Высокий
nvd логотип

CVE-2014-0226

больше 11 лет назад

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
EPSS: Высокий
debian логотип

CVE-2014-0226

больше 11 лет назад

Race condition in the mod_status module in the Apache HTTP Server befo ...

CVSS2: 6.8
EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2015:0689-1

около 11 лет назад

Recommended update for apache2

EPSS: Низкий
github логотип

GHSA-9c3m-phm4-whxx

больше 3 лет назад

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

EPSS: Высокий
fstec логотип

BDU:2015-00396

больше 11 лет назад

Уязвимость программного обеспечения Apache HTTP Server, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 6.8
EPSS: Высокий
ubuntu логотип

CVE-2014-0231

больше 11 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
EPSS: Средний
redhat логотип

CVE-2014-0231

больше 11 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2014-0231

больше 11 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
EPSS: Средний
debian логотип

CVE-2014-0231

больше 11 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not h ...

CVSS2: 5
EPSS: Средний
ubuntu логотип

CVE-2014-0118

больше 11 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 4.3
EPSS: Средний
redhat логотип

CVE-2014-0118

больше 11 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2014-0118

больше 11 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2014-0118

больше 11 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate mod ...

CVSS2: 4.3
EPSS: Средний
github логотип

GHSA-m8vg-h7wr-m54w

больше 3 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

EPSS: Средний
github логотип

GHSA-3h3q-q3h4-xhww

больше 3 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

EPSS: Средний
fstec логотип

BDU:2015-00399

больше 11 лет назад

Уязвимость программного обеспечения Apache HTTP Server, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

CVSS2: 5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2014-0920

ELSA-2014-0920: httpd security update (IMPORTANT)

больше 11 лет назад
oracle-oval логотип
ELSA-2014-0921

ELSA-2014-0921: httpd security update (IMPORTANT)

больше 11 лет назад
ubuntu логотип
CVE-2014-0226

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
73%
Высокий
больше 11 лет назад
redhat логотип
CVE-2014-0226

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
73%
Высокий
больше 11 лет назад
nvd логотип
CVE-2014-0226

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
73%
Высокий
больше 11 лет назад
debian логотип
CVE-2014-0226

Race condition in the mod_status module in the Apache HTTP Server befo ...

CVSS2: 6.8
73%
Высокий
больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0689-1

Recommended update for apache2

около 11 лет назад
github логотип
GHSA-9c3m-phm4-whxx

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

73%
Высокий
больше 3 лет назад
fstec логотип
BDU:2015-00396

Уязвимость программного обеспечения Apache HTTP Server, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 6.8
73%
Высокий
больше 11 лет назад
ubuntu логотип
CVE-2014-0231

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
36%
Средний
больше 11 лет назад
redhat логотип
CVE-2014-0231

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
36%
Средний
больше 11 лет назад
nvd логотип
CVE-2014-0231

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
36%
Средний
больше 11 лет назад
debian логотип
CVE-2014-0231

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not h ...

CVSS2: 5
36%
Средний
больше 11 лет назад
ubuntu логотип
CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 4.3
49%
Средний
больше 11 лет назад
redhat логотип
CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 5
49%
Средний
больше 11 лет назад
nvd логотип
CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 4.3
49%
Средний
больше 11 лет назад
debian логотип
CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate mod ...

CVSS2: 4.3
49%
Средний
больше 11 лет назад
github логотип
GHSA-m8vg-h7wr-m54w

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

49%
Средний
больше 3 лет назад
github логотип
GHSA-3h3q-q3h4-xhww

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

36%
Средний
больше 3 лет назад
fstec логотип
BDU:2015-00399

Уязвимость программного обеспечения Apache HTTP Server, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

CVSS2: 5
36%
Средний
больше 11 лет назад

Уязвимостей на страницу