CVE-2001-0731: Medium severity Apache HTTP Server vulnerability
Published Oct 1, 2001
·Updated
Apache 1.3.20 with Multiviews enabled allows remote attackers to view directory contents and bypass the index page via a URL containing the "M=D" query string.
Affected Software
1 affected component
Apache HTTP Server=1.3.20
Remediation
Patch Available
Event History
Oct 1, 2001
CVE Published
04:00 AM
Jun 25, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0731?
CVE-2001-0731 is classified as a moderate severity vulnerability that allows directory content disclosure.
2
How do I fix CVE-2001-0731?
To mitigate CVE-2001-0731, disable Multiviews and ensure proper directory listing configurations are enforced.
3
What systems are affected by CVE-2001-0731?
CVE-2001-0731 specifically affects Apache HTTP Server version 1.3.20 when Multiviews is enabled.
4
Can CVE-2001-0731 lead to data exposure?
Yes, CVE-2001-0731 can allow attackers to view sensitive directory contents, leading to potential data exposure.
5
What type of attacks can CVE-2001-0731 enable?
CVE-2001-0731 can enable remote attackers to bypass the index page and enumerate files within a directory.