Vulnerabilities > CVE-2001-1072 - Unspecified vulnerability in Apache Http Server 1.3.14/1.3.17/1.3.19
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Apache with mod_rewrite enabled on most UNIX systems allows remote attackers to bypass RewriteRules by inserting extra / (slash) characters into the requested path, which causes the regular expression in the RewriteRule to fail.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
References
- http://www.apacheweek.com/issues/02-02-01#security
- http://www.apacheweek.com/issues/02-02-01#security
- http://www.securityfocus.com/archive/1/203955
- http://www.securityfocus.com/archive/1/203955
- http://www.securityfocus.com/bid/3176
- http://www.securityfocus.com/bid/3176
- https://exchange.xforce.ibmcloud.com/vulnerabilities/8633
- https://exchange.xforce.ibmcloud.com/vulnerabilities/8633