First published: Wed Mar 20 1996(Updated: )
phf CGI program allows remote command execution through shell metacharacters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache HTTP Server | =1.0.3 | |
NCSA HTTPD | =1.5a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0067 is rated as a high-severity vulnerability due to its remote command execution capabilities.
To fix CVE-1999-0067, update to a patched version of the affected software or disable the vulnerable CGI program.
CVE-1999-0067 affects Apache Http Server version 1.0.3 and NCSA HTTPD version 1.5a.
The risks of CVE-1999-0067 include the potential for attackers to execute arbitrary commands on the server.
While CVE-1999-0067 is an older vulnerability, its existence highlights the importance of securing outdated software that may still be in use.