Логотип exploitDog
bind:CVE-2007-1742
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2007-1742

Количество 4

Количество 4

ubuntu логотип

CVE-2007-1742

больше 18 лет назад

suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison for verifying whether the current directory is within the document root, which might allow local users to perform unauthorized operations on incorrect directories, as demonstrated using "html_backup" and "htmleditor" under an "html" directory. NOTE: the researcher, who is reliable, claims that the vendor disputes the issue because "the attacks described rely on an insecure server configuration" in which the user "has write access to the document root."

CVSS2: 3.7
EPSS: Низкий
nvd логотип

CVE-2007-1742

больше 18 лет назад

suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison for verifying whether the current directory is within the document root, which might allow local users to perform unauthorized operations on incorrect directories, as demonstrated using "html_backup" and "htmleditor" under an "html" directory. NOTE: the researcher, who is reliable, claims that the vendor disputes the issue because "the attacks described rely on an insecure server configuration" in which the user "has write access to the document root."

CVSS2: 3.7
EPSS: Низкий
debian логотип

CVE-2007-1742

больше 18 лет назад

suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison f ...

CVSS2: 3.7
EPSS: Низкий
github логотип

GHSA-gm29-7qcq-q6q6

больше 3 лет назад

suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison for verifying whether the current directory is within the document root, which might allow local users to perform unauthorized operations on incorrect directories, as demonstrated using "html_backup" and "htmleditor" under an "html" directory. NOTE: the researcher, who is reliable, claims that the vendor disputes the issue because "the attacks described rely on an insecure server configuration" in which the user "has write access to the document root."

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2007-1742

suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison for verifying whether the current directory is within the document root, which might allow local users to perform unauthorized operations on incorrect directories, as demonstrated using "html_backup" and "htmleditor" under an "html" directory. NOTE: the researcher, who is reliable, claims that the vendor disputes the issue because "the attacks described rely on an insecure server configuration" in which the user "has write access to the document root."

CVSS2: 3.7
0%
Низкий
больше 18 лет назад
nvd логотип
CVE-2007-1742

suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison for verifying whether the current directory is within the document root, which might allow local users to perform unauthorized operations on incorrect directories, as demonstrated using "html_backup" and "htmleditor" under an "html" directory. NOTE: the researcher, who is reliable, claims that the vendor disputes the issue because "the attacks described rely on an insecure server configuration" in which the user "has write access to the document root."

CVSS2: 3.7
0%
Низкий
больше 18 лет назад
debian логотип
CVE-2007-1742

suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison f ...

CVSS2: 3.7
0%
Низкий
больше 18 лет назад
github логотип
GHSA-gm29-7qcq-q6q6

suexec in Apache HTTP Server (httpd) 2.2.3 uses a partial comparison for verifying whether the current directory is within the document root, which might allow local users to perform unauthorized operations on incorrect directories, as demonstrated using "html_backup" and "htmleditor" under an "html" directory. NOTE: the researcher, who is reliable, claims that the vendor disputes the issue because "the attacks described rely on an insecure server configuration" in which the user "has write access to the document root."

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу