CVE-2000-0913
Published Dec 19, 2000
Last updated a year ago
Overview
- Description
- mod_rewrite in Apache 1.3.12 and earlier allows remote attackers to read arbitrary files if a RewriteRule directive is expanded to include a filename whose name contains a regular expression.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Vendor comments
- ApacheFixed in Apache HTTP Server 1.3.14: http://httpd.apache.org/security/vulnerabilities_13.html
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:apache:http_server:0.8.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E80E240C-9879-48EC-AC9A-2C1FD5E2DD8E" }, { "criteria": "cpe:2.3:a:apache:http_server:0.8.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AF16AF7D-9475-435F-AE36-F16CE8F45A75" }, { "criteria": "cpe:2.3:a:apache:http_server:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06F3141B-2C30-4230-A425-465E235539EE" }, { "criteria": "cpe:2.3:a:apache:http_server:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B6D2C9EA-1241-4DE6-A6CD-FCD7EEC9B42D" }, { "criteria": "cpe:2.3:a:apache:http_server:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5EA86B9-4F86-4ADA-BC6A-4F6E261848F6" }, { "criteria": "cpe:2.3:a:apache:http_server:1.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CA6523AC-ECC9-4A79-9387-18308FCF9A68" }, { "criteria": "cpe:2.3:a:apache:http_server:1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BDCBCF0F-63FB-4A03-92F8-FF121083CD85" }, { "criteria": "cpe:2.3:a:apache:http_server:1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4363C07C-179B-4797-947F-7440AD1F2D00" }, { "criteria": "cpe:2.3:a:apache:http_server:1.3.11:*:win32:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5E3B21AE-B167-4E49-AC32-537DCAABAB33" }, { "criteria": "cpe:2.3:a:apache:http_server:1.3.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "33FD6791-3B84-40CA-BCF4-B5637B172F2A" } ], "operator": "OR" } ] } ]