Логотип exploitDog
bind:"BDU:2024-06280" OR bind:"CVE-2024-39884"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2024-06280" OR bind:"CVE-2024-39884"

Количество 12

Количество 12

fstec логотип

BDU:2024-06280

больше 1 года назад

Уязвимость ядра веб-сервера Apache HTTP Server, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2024-39884

больше 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
redhat логотип

CVE-2024-39884

больше 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-39884

больше 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
msrc логотип

CVE-2024-39884

больше 1 года назад

CVSS3: 6.2
EPSS: Низкий
debian логотип

CVE-2024-39884

больше 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use ...

CVSS3: 6.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3061-1

около 1 года назад

Security update for apache2

EPSS: Низкий
github логотип

GHSA-5r34-776f-3434

больше 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3173-1

около 1 года назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3172-1

около 1 года назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02241-1

4 месяца назад

Security update for apache2

EPSS: Низкий
redos логотип

ROS-20240812-15

больше 1 года назад

Множественные уязвимости httpd

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-06280

Уязвимость ядра веб-сервера Apache HTTP Server, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 6.2
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use ...

CVSS3: 6.2
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3061-1

Security update for apache2

0%
Низкий
около 1 года назад
github логотип
GHSA-5r34-776f-3434

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3173-1

Security update for apache2

около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3172-1

Security update for apache2

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:02241-1

Security update for apache2

4 месяца назад
redos логотип
ROS-20240812-15

Множественные уязвимости httpd

CVSS3: 7.5
больше 1 года назад

Уязвимостей на страницу