Количество 12
Количество 12
GHSA-p3h3-wpw6-m7vf
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.

CVE-2017-15715
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.

CVE-2017-15715
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.

CVE-2017-15715
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.
CVE-2017-15715
In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMat ...

BDU:2019-04106
Уязвимость компонента <FilesMatch> веб-сервера Apache HTTP Server, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

SUSE-SU-2018:0901-1
Security update for apache2

SUSE-SU-2018:0879-1
Security update for apache2
ELSA-2020-3958
ELSA-2020-3958: httpd security, bug fix, and enhancement update (MODERATE)

openSUSE-SU-2018:1198-1
Security update for apache2

SUSE-SU-2018:1161-2
Security update for apache2

SUSE-SU-2018:1161-1
Security update for apache2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-p3h3-wpw6-m7vf In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. | CVSS3: 8.1 | 94% Критический | около 3 лет назад | |
![]() | CVE-2017-15715 In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. | CVSS3: 8.1 | 94% Критический | около 7 лет назад |
![]() | CVE-2017-15715 In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. | CVSS3: 3.7 | 94% Критический | около 7 лет назад |
![]() | CVE-2017-15715 In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. | CVSS3: 8.1 | 94% Критический | около 7 лет назад |
CVE-2017-15715 In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMat ... | CVSS3: 8.1 | 94% Критический | около 7 лет назад | |
![]() | BDU:2019-04106 Уязвимость компонента <FilesMatch> веб-сервера Apache HTTP Server, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации | CVSS3: 7.3 | 94% Критический | около 7 лет назад |
![]() | SUSE-SU-2018:0901-1 Security update for apache2 | около 7 лет назад | ||
![]() | SUSE-SU-2018:0879-1 Security update for apache2 | около 7 лет назад | ||
ELSA-2020-3958 ELSA-2020-3958: httpd security, bug fix, and enhancement update (MODERATE) | больше 4 лет назад | |||
![]() | openSUSE-SU-2018:1198-1 Security update for apache2 | около 7 лет назад | ||
![]() | SUSE-SU-2018:1161-2 Security update for apache2 | больше 6 лет назад | ||
![]() | SUSE-SU-2018:1161-1 Security update for apache2 | около 7 лет назад |
Уязвимостей на страницу