PT-2003-1879 · Apache · Apache+1

Publicado

2003-10-27

·

Atualizado

2022-09-23

·

CVE-2003-0789

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Apache versions prior to 2.0.48
Description: The issue arises from the mishandling of CGI redirect paths by mod cgid when a threaded Multi-Processing Module (MPM) is used. This could cause Apache to send the output of a CGI program to the wrong client.
Recommendations: For versions prior to 2.0.48, update to version 2.0.48 or later to resolve the issue. As a temporary workaround, consider avoiding the use of threaded MPM or restricting access to CGI programs until the update is applied.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2003-0789

Produtos afetados

Apache
Apache Http Server