CVE-2001-0766

Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched by Apache's filters.
References
Link Resource
http://archives.neohapsis.com/archives/bugtraq/2001-06/0090.html Broken Link Patch Vendor Advisory
http://www.securityfocus.com/bid/2852 Broken Link Exploit Patch Third Party Advisory VDB Entry Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:apache:http_server:1.3.14:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x:10.0.3:*:*:*:*:*:*:*

History

02 Feb 2024, 02:13

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2001-06/0090.html - Patch, Vendor Advisory () http://archives.neohapsis.com/archives/bugtraq/2001-06/0090.html - Broken Link, Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/2852 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/2852 - Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory
CVSS v2 : 7.5
v3 : unknown
v2 : 7.5
v3 : 9.8
CWE NVD-CWE-Other CWE-178
CPE cpe:2.3:o:apple:mac_os_x:10.0.3:*:*:*:*:*:*:*
First Time Apple
Apple mac Os X

Information

Published : 2001-10-18 04:00

Updated : 2024-02-02 02:13


NVD link : CVE-2001-0766

Mitre link : CVE-2001-0766

CVE.ORG link : CVE-2001-0766


JSON object : View

Products Affected

apache

  • http_server

apple

  • mac_os_x
CWE
CWE-178

Improper Handling of Case Sensitivity