First published: Thu Apr 15 2004(Updated: )
Directory traversal vulnerability in Apache 1.3.29 and earlier, and Apache 2.0.48 and earlier, when running on Cygwin, allows remote attackers to read arbitrary files via a URL containing "..%5C" (dot dot encoded backslash) sequences.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache HTTP server | =1.0.5 | |
Apache HTTP server | =0.8.11 | |
Apache HTTP server | =1.1.1 | |
Apache HTTP server | =1.0.2 | |
Apache HTTP server | =1.1 | |
Apache HTTP server | =1.2.5 | |
Apache HTTP server | =1.0 | |
Apache HTTP server | =1.0.3 | |
Apache HTTP server | =1.3 | |
Apache HTTP server | =0.8.14 | |
Apache HTTP server | =1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.