CVE-2001-0893: Medium severity acme mini httpd vulnerability
Published Nov 13, 2001
·Updated
Acme minihttpd before 1.16 allows remote attackers to view sensitive files under the document root (such as .htpasswd) via a GET request with a trailing /.
Affected Software
1 affected component
ACME Mini Httpd<=1.16
Event History
Nov 13, 2001
CVE Published
05:00 AM
Feb 2, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0893?
CVE-2001-0893 is considered a moderate severity vulnerability due to its ability to expose sensitive files.
2
How do I fix CVE-2001-0893?
To fix CVE-2001-0893, upgrade to Acme mini_httpd version 1.16 or later.
3
What are the consequences of exploiting CVE-2001-0893?
Exploiting CVE-2001-0893 allows remote attackers to access sensitive files, potentially leading to credential theft.
4
Which versions of Acme mini_httpd are affected by CVE-2001-0893?
CVE-2001-0893 affects all versions of Acme mini_httpd before 1.16.
5
What kind of files can be accessed via CVE-2001-0893?
CVE-2001-0893 can expose sensitive files such as .htpasswd when accessed through a specially crafted GET request.