Логотип exploitDog
bind:"CVE-2024-39884"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-39884"

Количество 11

Количество 11

ubuntu логотип

CVE-2024-39884

около 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
redhat логотип

CVE-2024-39884

около 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-39884

около 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
msrc логотип

CVE-2024-39884

около 1 года назад

CVSS3: 6.2
EPSS: Низкий
debian логотип

CVE-2024-39884

около 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use ...

CVSS3: 6.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3061-1

11 месяцев назад

Security update for apache2

EPSS: Низкий
github логотип

GHSA-5r34-776f-3434

около 1 года назад

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
EPSS: Низкий
fstec логотип

BDU:2024-06280

около 1 года назад

Уязвимость ядра веб-сервера Apache HTTP Server, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3173-1

11 месяцев назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3172-1

11 месяцев назад

Security update for apache2

EPSS: Низкий
redos логотип

ROS-20240812-15

12 месяцев назад

Множественные уязвимости httpd

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 7.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
около 1 года назад
msrc логотип
CVSS3: 6.2
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-39884

A regression in the core of Apache HTTP Server 2.4.60 ignores some use ...

CVSS3: 6.2
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3061-1

Security update for apache2

0%
Низкий
11 месяцев назад
github логотип
GHSA-5r34-776f-3434

A regression in the core of Apache HTTP Server 2.4.60 ignores some use of the legacy content-type based configuration of handlers.   "AddType" and similar configuration, under some circumstances where files are requested indirectly, result in source code disclosure of local content. For example, PHP scripts may be served instead of interpreted. Users are recommended to upgrade to version 2.4.61, which fixes this issue.

CVSS3: 6.2
0%
Низкий
около 1 года назад
fstec логотип
BDU:2024-06280

Уязвимость ядра веб-сервера Apache HTTP Server, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:3173-1

Security update for apache2

11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3172-1

Security update for apache2

11 месяцев назад
redos логотип
ROS-20240812-15

Множественные уязвимости httpd

CVSS3: 7.5
12 месяцев назад

Уязвимостей на страницу