Количество 13
Количество 13
CVE-2018-1312
In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection.
CVE-2018-1312
In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection.
CVE-2018-1312
In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection.
CVE-2018-1312
In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authen ...
GHSA-hvff-4fq3-p325
In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection.
ELSA-2019-1898
ELSA-2019-1898: httpd security update (LOW)
BDU:2018-01420
Уязвимость модуля mod_auth_digest веб-сервера Apache HTTP Server, позволяющая нарушителю раскрыть или нарушить целостность защищаемой информации
SUSE-SU-2018:1079-1
Security update for apache2
SUSE-SU-2018:0901-1
Security update for apache2
SUSE-SU-2018:0879-1
Security update for apache2
openSUSE-SU-2018:1198-1
Security update for apache2
SUSE-SU-2018:1161-2
Security update for apache2
SUSE-SU-2018:1161-1
Security update for apache2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1312 In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection. | CVSS3: 9.8 | 7% Низкий | почти 8 лет назад | |
CVE-2018-1312 In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection. | CVSS3: 4.2 | 7% Низкий | почти 8 лет назад | |
CVE-2018-1312 In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection. | CVSS3: 9.8 | 7% Низкий | почти 8 лет назад | |
CVE-2018-1312 In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authen ... | CVSS3: 9.8 | 7% Низкий | почти 8 лет назад | |
GHSA-hvff-4fq3-p325 In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection. | CVSS3: 9.8 | 7% Низкий | больше 3 лет назад | |
ELSA-2019-1898 ELSA-2019-1898: httpd security update (LOW) | больше 6 лет назад | |||
BDU:2018-01420 Уязвимость модуля mod_auth_digest веб-сервера Apache HTTP Server, позволяющая нарушителю раскрыть или нарушить целостность защищаемой информации | CVSS3: 7.3 | 7% Низкий | почти 8 лет назад | |
SUSE-SU-2018:1079-1 Security update for apache2 | почти 8 лет назад | |||
SUSE-SU-2018:0901-1 Security update for apache2 | почти 8 лет назад | |||
SUSE-SU-2018:0879-1 Security update for apache2 | почти 8 лет назад | |||
openSUSE-SU-2018:1198-1 Security update for apache2 | больше 7 лет назад | |||
SUSE-SU-2018:1161-2 Security update for apache2 | больше 7 лет назад | |||
SUSE-SU-2018:1161-1 Security update for apache2 | почти 8 лет назад |
Уязвимостей на страницу