Количество 12
Количество 12
CVE-2017-15715
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.
CVE-2017-15715
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.
CVE-2017-15715
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.
CVE-2017-15715
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMat ...
GHSA-p3h3-wpw6-m7vf
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.
BDU:2019-04106
Уязвимость компонента <FilesMatch> веб-сервера Apache HTTP Server, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
SUSE-SU-2018:0901-1
Security update for apache2
SUSE-SU-2018:0879-1
Security update for apache2
ELSA-2020-3958
ELSA-2020-3958: httpd security, bug fix, and enhancement update (MODERATE)
openSUSE-SU-2018:1198-1
Security update for apache2
SUSE-SU-2018:1161-2
Security update for apache2
SUSE-SU-2018:1161-1
Security update for apache2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2017-15715 In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. | CVSS3: 8.1 | 94% Критический | больше 7 лет назад | |
CVE-2017-15715 In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. | CVSS3: 3.7 | 94% Критический | больше 7 лет назад | |
CVE-2017-15715 In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. | CVSS3: 8.1 | 94% Критический | больше 7 лет назад | |
CVE-2017-15715 In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMat ... | CVSS3: 8.1 | 94% Критический | больше 7 лет назад | |
GHSA-p3h3-wpw6-m7vf In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. | CVSS3: 8.1 | 94% Критический | больше 3 лет назад | |
BDU:2019-04106 Уязвимость компонента <FilesMatch> веб-сервера Apache HTTP Server, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации | CVSS3: 7.3 | 94% Критический | больше 7 лет назад | |
SUSE-SU-2018:0901-1 Security update for apache2 | больше 7 лет назад | |||
SUSE-SU-2018:0879-1 Security update for apache2 | больше 7 лет назад | |||
ELSA-2020-3958 ELSA-2020-3958: httpd security, bug fix, and enhancement update (MODERATE) | около 5 лет назад | |||
openSUSE-SU-2018:1198-1 Security update for apache2 | больше 7 лет назад | |||
SUSE-SU-2018:1161-2 Security update for apache2 | около 7 лет назад | |||
SUSE-SU-2018:1161-1 Security update for apache2 | больше 7 лет назад |
Уязвимостей на страницу