Vulnerabilities > CVE-2001-0766 - Improper Handling of Case Sensitivity vulnerability in Apache Http Server 1.3.14

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
apache
CWE-178
critical
exploit available

Summary

Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched by Apache's filters.

Vulnerable Configurations

Part Description Count
Application
Apache
1
OS
Apple
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionApache 1.3.14 Mac File Protection Bypass Vulnerability. CVE-2001-0766. Remote exploit for osx platform
idEDB-ID:20911
last seen2016-02-02
modified2001-06-10
published2001-06-10
reporterStefan Arentz
sourcehttps://www.exploit-db.com/download/20911/
titleApache 1.3.14 Mac File Protection Bypass Vulnerability