Логотип exploitDog
bind:"CVE-2025-58098" OR bind:"CVE-2025-65082" OR bind:"CVE-2025-66200"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-58098" OR bind:"CVE-2025-65082" OR bind:"CVE-2025-66200"

Количество 33

Количество 33

nvd логотип

CVE-2025-66200

2 месяца назад

mod_userdir+suexec bypass via AllowOverride FileInfo vulnerability in Apache HTTP Server. Users with access to use the RequestHeader directive in htaccess can cause some CGI scripts to run under an unexpected userid. This issue affects Apache HTTP Server: from 2.4.7 through 2.4.65. Users are recommended to upgrade to version 2.4.66, which fixes the issue.

CVSS3: 5.4
EPSS: Низкий
msrc логотип

CVE-2025-66200

около 2 месяцев назад

Apache HTTP Server: mod_userdir+suexec bypass via AllowOverride FileInfo

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-66200

2 месяца назад

mod_userdir+suexec bypass via AllowOverride FileInfo vulnerability in ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2025-65082

2 месяца назад

Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server through environment variables set via the Apache configuration unexpectedly superseding variables calculated by the server for CGI programs. This issue affects Apache HTTP Server from 2.4.0 through 2.4.65. Users are recommended to upgrade to version 2.4.66 which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2025-65082

2 месяца назад

Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server through environment variables set via the Apache configuration unexpectedly superseding variables calculated by the server for CGI programs. This issue affects Apache HTTP Server from 2.4.0 through 2.4.65. Users are recommended to upgrade to version 2.4.66 which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2025-65082

около 2 месяцев назад

Apache HTTP Server: CGI environment variable override

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-65082

2 месяца назад

Improper Neutralization of Escape, Meta, or Control Sequences vulnerab ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-768g-4qpg-32w7

2 месяца назад

Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server through environment variables set via the Apache configuration unexpectedly superseding variables calculated by the server for CGI programs. This issue affects Apache HTTP Server from 2.4.0 through 2.4.65. Users are recommended to upgrade to version 2.4.66 which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3j3g-3pw9-9vcc

2 месяца назад

mod_userdir+suexec bypass via AllowOverride FileInfo vulnerability in Apache HTTP Server. Users with access to use the RequestHeader directive in htaccess can cause some CGI scripts to run under an unexpected userid. This issue affects Apache HTTP Server: from 2.4.7 through 2.4.65. Users are recommended to upgrade to version 2.4.66, which fixes the issue.

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2025-15638

3 месяца назад

Уязвимость модуля mod_userdir веб-сервера Apache HTTP Server, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2025-15637

3 месяца назад

Уязвимость веб-сервера Apache HTTP Server, связанная с непринятием мер по нейтрализации специальных управляющих элементов, позволяющая нарушителю оказать влияние на конфиденциальность и целостность защищаемой информации

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260122-73-0028

15 дней назад

Уязвимость httpd

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20260122-73-0027

15 дней назад

Уязвимость httpd

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-66200

mod_userdir+suexec bypass via AllowOverride FileInfo vulnerability in Apache HTTP Server. Users with access to use the RequestHeader directive in htaccess can cause some CGI scripts to run under an unexpected userid. This issue affects Apache HTTP Server: from 2.4.7 through 2.4.65. Users are recommended to upgrade to version 2.4.66, which fixes the issue.

CVSS3: 5.4
0%
Низкий
2 месяца назад
msrc логотип
CVE-2025-66200

Apache HTTP Server: mod_userdir+suexec bypass via AllowOverride FileInfo

CVSS3: 5.4
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-66200

mod_userdir+suexec bypass via AllowOverride FileInfo vulnerability in ...

CVSS3: 5.4
0%
Низкий
2 месяца назад
ubuntu логотип
CVE-2025-65082

Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server through environment variables set via the Apache configuration unexpectedly superseding variables calculated by the server for CGI programs. This issue affects Apache HTTP Server from 2.4.0 through 2.4.65. Users are recommended to upgrade to version 2.4.66 which fixes the issue.

CVSS3: 6.5
0%
Низкий
2 месяца назад
nvd логотип
CVE-2025-65082

Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server through environment variables set via the Apache configuration unexpectedly superseding variables calculated by the server for CGI programs. This issue affects Apache HTTP Server from 2.4.0 through 2.4.65. Users are recommended to upgrade to version 2.4.66 which fixes the issue.

CVSS3: 6.5
0%
Низкий
2 месяца назад
msrc логотип
CVE-2025-65082

Apache HTTP Server: CGI environment variable override

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-65082

Improper Neutralization of Escape, Meta, or Control Sequences vulnerab ...

CVSS3: 6.5
0%
Низкий
2 месяца назад
github логотип
GHSA-768g-4qpg-32w7

Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server through environment variables set via the Apache configuration unexpectedly superseding variables calculated by the server for CGI programs. This issue affects Apache HTTP Server from 2.4.0 through 2.4.65. Users are recommended to upgrade to version 2.4.66 which fixes the issue.

CVSS3: 6.5
0%
Низкий
2 месяца назад
github логотип
GHSA-3j3g-3pw9-9vcc

mod_userdir+suexec bypass via AllowOverride FileInfo vulnerability in Apache HTTP Server. Users with access to use the RequestHeader directive in htaccess can cause some CGI scripts to run under an unexpected userid. This issue affects Apache HTTP Server: from 2.4.7 through 2.4.65. Users are recommended to upgrade to version 2.4.66, which fixes the issue.

CVSS3: 5.4
0%
Низкий
2 месяца назад
fstec логотип
BDU:2025-15638

Уязвимость модуля mod_userdir веб-сервера Apache HTTP Server, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код

CVSS3: 5.4
0%
Низкий
3 месяца назад
fstec логотип
BDU:2025-15637

Уязвимость веб-сервера Apache HTTP Server, связанная с непринятием мер по нейтрализации специальных управляющих элементов, позволяющая нарушителю оказать влияние на конфиденциальность и целостность защищаемой информации

CVSS3: 6.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260122-73-0028

Уязвимость httpd

CVSS3: 5.4
0%
Низкий
15 дней назад
redos логотип
ROS-20260122-73-0027

Уязвимость httpd

CVSS3: 6.5
0%
Низкий
15 дней назад

Уязвимостей на страницу