Vulnerabilities > CVE-2001-1072 - Unspecified vulnerability in Apache Http Server 1.3.14/1.3.17/1.3.19

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
apache

Summary

Apache with mod_rewrite enabled on most UNIX systems allows remote attackers to bypass RewriteRules by inserting extra / (slash) characters into the requested path, which causes the regular expression in the RewriteRule to fail.

Vulnerable Configurations

Part Description Count
Application
Apache
3