Логотип exploitDog
bind: "CVE-2024-39884"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-39884"

Количество 11

Количество 11

ubuntu логотип

CVE-2024-39884

12 месяцев назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
redhat логотип

CVE-2024-39884

12 месяцев назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-39884

12 месяцев назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
msrc логотип

CVE-2024-39884

11 месяцев назад

CVSS3: 6.2
EPSS: Низкий
debian логотип

CVE-2024-39884

12 месяцев назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use ...

CVSS3: 6.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3061-1

10 месяцев назад

Security update for apache2

EPSS: Низкий
github логотип

GHSA-5r34-776f-3434

12 месяцев назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
fstec логотип

BDU:2024-06280

12 месяцев назад

Уязвимость ядра веб-сервера Apache HTTP Server, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3173-1

9 месяцев назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3172-1

9 месяцев назад

Security update for apache2

EPSS: Низкий
redos логотип

ROS-20240812-15

10 месяцев назад

Множественные уязвимости httpd

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
12 месяцев назад
redhat логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 7.5
0%
Низкий
12 месяцев назад
nvd логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
12 месяцев назад
msrc логотип
CVSS3: 6.2
0%
Низкий
11 месяцев назад
debian логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use ...

CVSS3: 6.2
0%
Низкий
12 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3061-1

Security update for apache2

0%
Низкий
10 месяцев назад
github логотип
GHSA-5r34-776f-3434

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
12 месяцев назад
fstec логотип
BDU:2024-06280

Уязвимость ядра веб-сервера Apache HTTP Server, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
0%
Низкий
12 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3173-1

Security update for apache2

9 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3172-1

Security update for apache2

9 месяцев назад
redos логотип
ROS-20240812-15

Множественные уязвимости httpd

CVSS3: 7.5
10 месяцев назад

Уязвимостей на страницу