Vulnerability index

Browse CVEs

2,864 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HTTP Server MEDIUM 5.0
CVE-1999-0289

The Apache web server for Win32 may provide access to restricted files when a . (dot) is appended to a requested URL.

Mitigation only
Fix from $1,600 1999-12-12
HTTP Server HIGH 7.5
CVE-1999-1053EPSS 85%

guestbook.pl cleanses user-inserted SSI commands by removing text between "<!--" and "-->" separators, which allows remote attackers to execute arbit…

Patch available
Fix from $1,950 1999-09-13
HTTP Server HIGH 10.0
CVE-1999-0926EPSS 9%

Apache allows remote attackers to conduct a denial of service via a large number of MIME headers.

No fix yet
Fix from $1,950 1999-09-03
HTTP Server MEDIUM 5.0
CVE-2000-1206EPSS 5%

Vulnerability in Apache httpd before 1.3.11, when configured for mass virtual hosting using mod_rewrite, or mod_vhost_alias in Apache 1.3.9, allows r…

Mitigation only
Fix from $1,600 1999-08-20
HTTP Server HIGH 10.0
CVE-1999-1237EPSS 8%

Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attac…

Mitigation only
Fix from $1,950 1999-06-06
HTTP Server MEDIUM 5.0
CVE-1999-1412EPSS 35%

A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a fl…

Mitigation only
Fix from $1,600 1999-06-03
HTTP Server MEDIUM 5.0
CVE-1999-0678EPSS 31%

A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read documentation files for the …

Mitigation only
Fix from $1,600 1999-01-17
HTTP Server HIGH 10.0
CVE-1999-1199EPSS 8%

Apache WWW server 1.3.1 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via a large number of MIME headers wit…

Fix: after 1.3.1
Fix from $1,950 1998-08-07
HTTP Server MEDIUM 5.0
CVE-1999-0107EPSS 20%

Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of GET requests containing a la…

Mitigation only
Fix from $1,600 1997-12-30
HTTP Server HIGH 7.5
CVE-1999-0071

Apache httpd cookie buffer overflow for versions 1.1.1 and earlier.

Mitigation only
Fix from $1,950 1997-09-01
HTTP Server HIGH 7.5
CVE-1999-0236EPSS 26%

ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.

Fix: 1.0+
Fix from $1,950 1997-01-01
HTTP Server HIGH 7.5
CVE-1999-0045EPSS 26%

List of arbitrary files on Web host via nph-test-cgi script.

Mitigation only
Fix from $1,950 1996-12-10
HTTP Server MEDIUM 5.0
CVE-1999-0070EPSS 30%

test-cgi program allows an attacker to list files on the server.

Fix: 1.3.0+
Fix from $1,600 1996-04-01
HTTP Server HIGH 10.0
CVE-1999-0067EPSS 87%

phf CGI program allows remote command execution through shell metacharacters.

Mitigation only
Fix from $1,950 1996-03-20