Логотип exploitDog
bind:"CVE-2014-0226" OR bind:"CVE-2014-0118" OR bind:"CVE-2014-0231"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2014-0226" OR bind:"CVE-2014-0118" OR bind:"CVE-2014-0231"

Количество 22

Количество 22

oracle-oval логотип

ELSA-2014-0920

около 11 лет назад

ELSA-2014-0920: httpd security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2014-0921

около 11 лет назад

ELSA-2014-0921: httpd security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2014-0226

около 11 лет назад

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
EPSS: Критический
redhat логотип

CVE-2014-0226

около 11 лет назад

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
EPSS: Критический
nvd логотип

CVE-2014-0226

около 11 лет назад

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
EPSS: Критический
debian логотип

CVE-2014-0226

около 11 лет назад

Race condition in the mod_status module in the Apache HTTP Server befo ...

CVSS2: 6.8
EPSS: Критический
suse-cvrf логотип

SUSE-SU-2015:0689-1

почти 11 лет назад

Recommended update for apache2

EPSS: Низкий
github логотип

GHSA-9c3m-phm4-whxx

больше 3 лет назад

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

EPSS: Критический
fstec логотип

BDU:2015-00396

около 11 лет назад

Уязвимость программного обеспечения Apache HTTP Server, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 6.8
EPSS: Критический
ubuntu логотип

CVE-2014-0231

около 11 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
EPSS: Средний
redhat логотип

CVE-2014-0231

около 11 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2014-0231

около 11 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
EPSS: Средний
debian логотип

CVE-2014-0231

около 11 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not h ...

CVSS2: 5
EPSS: Средний
ubuntu логотип

CVE-2014-0118

около 11 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 4.3
EPSS: Средний
redhat логотип

CVE-2014-0118

около 11 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2014-0118

около 11 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2014-0118

около 11 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate mod ...

CVSS2: 4.3
EPSS: Средний
github логотип

GHSA-m8vg-h7wr-m54w

больше 3 лет назад

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

EPSS: Средний
github логотип

GHSA-3h3q-q3h4-xhww

больше 3 лет назад

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

EPSS: Средний
fstec логотип

BDU:2015-00399

около 11 лет назад

Уязвимость программного обеспечения Apache HTTP Server, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

CVSS2: 5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2014-0920

ELSA-2014-0920: httpd security update (IMPORTANT)

около 11 лет назад
oracle-oval логотип
ELSA-2014-0921

ELSA-2014-0921: httpd security update (IMPORTANT)

около 11 лет назад
ubuntu логотип
CVE-2014-0226

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
90%
Критический
около 11 лет назад
redhat логотип
CVE-2014-0226

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
90%
Критический
около 11 лет назад
nvd логотип
CVE-2014-0226

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

CVSS2: 6.8
90%
Критический
около 11 лет назад
debian логотип
CVE-2014-0226

Race condition in the mod_status module in the Apache HTTP Server befo ...

CVSS2: 6.8
90%
Критический
около 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0689-1

Recommended update for apache2

почти 11 лет назад
github логотип
GHSA-9c3m-phm4-whxx

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

90%
Критический
больше 3 лет назад
fstec логотип
BDU:2015-00396

Уязвимость программного обеспечения Apache HTTP Server, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 6.8
90%
Критический
около 11 лет назад
ubuntu логотип
CVE-2014-0231

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
17%
Средний
около 11 лет назад
redhat логотип
CVE-2014-0231

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
17%
Средний
около 11 лет назад
nvd логотип
CVE-2014-0231

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

CVSS2: 5
17%
Средний
около 11 лет назад
debian логотип
CVE-2014-0231

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not h ...

CVSS2: 5
17%
Средний
около 11 лет назад
ubuntu логотип
CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 4.3
49%
Средний
около 11 лет назад
redhat логотип
CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 5
49%
Средний
около 11 лет назад
nvd логотип
CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

CVSS2: 4.3
49%
Средний
около 11 лет назад
debian логотип
CVE-2014-0118

The deflate_in_filter function in mod_deflate.c in the mod_deflate mod ...

CVSS2: 4.3
49%
Средний
около 11 лет назад
github логотип
GHSA-m8vg-h7wr-m54w

The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

49%
Средний
больше 3 лет назад
github логотип
GHSA-3h3q-q3h4-xhww

The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.

17%
Средний
больше 3 лет назад
fstec логотип
BDU:2015-00399

Уязвимость программного обеспечения Apache HTTP Server, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

CVSS2: 5
17%
Средний
около 11 лет назад

Уязвимостей на страницу