Количество 6
Количество 6
CVE-2025-58098
Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives. This issue affects Apache HTTP Server before 2.4.66. Users are recommended to upgrade to version 2.4.66, which fixes the issue.
CVE-2025-58098
Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives. This issue affects Apache HTTP Server before 2.4.66. Users are recommended to upgrade to version 2.4.66, which fixes the issue.
CVE-2025-58098
Apache HTTP Server: Server Side Includes adds query string to #exec cmd=...
CVE-2025-58098
Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) ...
GHSA-4m29-g52g-c6qc
Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives. This issue affects Apache HTTP Server before 2.4.66. Users are recommended to upgrade to version 2.4.66, which fixes the issue.
BDU:2025-15635
Уязвимость модуля mod_cgid веб-сервера Apache HTTP Server, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-58098 Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives. This issue affects Apache HTTP Server before 2.4.66. Users are recommended to upgrade to version 2.4.66, which fixes the issue. | CVSS3: 8.3 | 0% Низкий | 13 дней назад | |
CVE-2025-58098 Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives. This issue affects Apache HTTP Server before 2.4.66. Users are recommended to upgrade to version 2.4.66, which fixes the issue. | CVSS3: 8.3 | 0% Низкий | 13 дней назад | |
CVE-2025-58098 Apache HTTP Server: Server Side Includes adds query string to #exec cmd=... | CVSS3: 8.3 | 0% Низкий | 8 дней назад | |
CVE-2025-58098 Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) ... | CVSS3: 8.3 | 0% Низкий | 13 дней назад | |
GHSA-4m29-g52g-c6qc Apache HTTP Server 2.4.65 and earlier with Server Side Includes (SSI) enabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives. This issue affects Apache HTTP Server before 2.4.66. Users are recommended to upgrade to version 2.4.66, which fixes the issue. | CVSS3: 8.3 | 0% Низкий | 13 дней назад | |
BDU:2025-15635 Уязвимость модуля mod_cgid веб-сервера Apache HTTP Server, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.3 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу