CVE-2001-0766: Critical severity Apache HTTP Server vulnerability
Published Oct 12, 2001
·Updated
Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched by Apache's filters.
Affected Software
3 affected components
Apache HTTP Server=1.3.14
All of the following
Apache HTTP Server=1.3.14
Apple iOS and macOS=10.0.3
Remediation
Patch Available
Event History
Oct 12, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0766?
CVE-2001-0766 is classified as a moderate severity vulnerability.
2
How can I fix CVE-2001-0766?
To address CVE-2001-0766, ensure that access restrictions in Apache are correctly configured to handle case sensitivity.
3
Which systems are affected by CVE-2001-0766?
CVE-2001-0766 affects Apache HTTP Server version 1.3.14 running on macOS X Client 10.0.3 with the HFS+ file system.
4
What type of vulnerability is CVE-2001-0766?
CVE-2001-0766 is a directory traversal vulnerability that allows remote attackers to bypass access restrictions.
5
Is there a known exploit for CVE-2001-0766?
Yes, there are public reports of exploits that can take advantage of the vulnerabilities present in CVE-2001-0766.