Логотип exploitDog
bind:"CVE-2015-0228" OR bind:"CVE-2015-3185" OR bind:"CVE-2015-0253" OR bind:"CVE-2015-3183"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2015-0228" OR bind:"CVE-2015-3185" OR bind:"CVE-2015-0253" OR bind:"CVE-2015-3183"

Количество 31

Количество 31

ubuntu логотип

CVE-2015-3183

около 10 лет назад

The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.

CVSS2: 5
EPSS: Средний
redhat логотип

CVE-2015-3183

около 10 лет назад

The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.

CVSS3: 3.7
EPSS: Средний
nvd логотип

CVE-2015-3183

около 10 лет назад

The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.

CVSS2: 5
EPSS: Средний
debian логотип

CVE-2015-3183

около 10 лет назад

The chunked transfer coding implementation in the Apache HTTP Server b ...

CVSS2: 5
EPSS: Средний
github логотип

GHSA-4g3x-jprw-h46m

больше 3 лет назад

The read_request_line function in server/protocol.c in the Apache HTTP Server 2.4.12 does not initialize the protocol structure member, which allows remote attackers to cause a denial of service (NULL pointer dereference and process crash) by sending a request that lacks a method to an installation that enables the INCLUDES filter and has an ErrorDocument 400 directive specifying a local URI.

EPSS: Низкий
fstec логотип

BDU:2015-10927

около 10 лет назад

Уязвимость веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1885-2

почти 10 лет назад

Security update for apache2

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2015:1885-1

почти 10 лет назад

Security update for apache2

EPSS: Средний
github логотип

GHSA-892q-vvcr-v6j5

больше 3 лет назад

The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.

EPSS: Средний
oracle-oval логотип

ELSA-2015-1668

около 10 лет назад

ELSA-2015-1668: httpd security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2015-10928

около 10 лет назад

Уязвимость веб-сервера Apache HTTP Server, позволяющая нарушителю передавать скрытые http-запросы

CVSS2: 5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-3183

The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.

CVSS2: 5
39%
Средний
около 10 лет назад
redhat логотип
CVE-2015-3183

The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.

CVSS3: 3.7
39%
Средний
около 10 лет назад
nvd логотип
CVE-2015-3183

The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.

CVSS2: 5
39%
Средний
около 10 лет назад
debian логотип
CVE-2015-3183

The chunked transfer coding implementation in the Apache HTTP Server b ...

CVSS2: 5
39%
Средний
около 10 лет назад
github логотип
GHSA-4g3x-jprw-h46m

The read_request_line function in server/protocol.c in the Apache HTTP Server 2.4.12 does not initialize the protocol structure member, which allows remote attackers to cause a denial of service (NULL pointer dereference and process crash) by sending a request that lacks a method to an installation that enables the INCLUDES filter and has an ErrorDocument 400 directive specifying a local URI.

7%
Низкий
больше 3 лет назад
fstec логотип
BDU:2015-10927

Уязвимость веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 5
7%
Низкий
около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1885-2

Security update for apache2

39%
Средний
почти 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1885-1

Security update for apache2

39%
Средний
почти 10 лет назад
github логотип
GHSA-892q-vvcr-v6j5

The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.

39%
Средний
больше 3 лет назад
oracle-oval логотип
ELSA-2015-1668

ELSA-2015-1668: httpd security update (MODERATE)

около 10 лет назад
fstec логотип
BDU:2015-10928

Уязвимость веб-сервера Apache HTTP Server, позволяющая нарушителю передавать скрытые http-запросы

CVSS2: 5
39%
Средний
около 10 лет назад

Уязвимостей на страницу