CVE Vulnerabilities

CVE-2001-1385

Published: Jan 12, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the engine = off option for a virtual host, may disable PHP for other virtual hosts, which could cause Apache to serve the source code of PHP scripts.

Affected Software

NameVendorStart VersionEnd Version
PhpPhp4.0 (including)4.0 (including)
PhpPhp4.0.1 (including)4.0.1 (including)
PhpPhp4.0.3 (including)4.0.3 (including)
PhpPhp4.0.4 (including)4.0.4 (including)
Red Hat Linux 5.2RedHat*
Red Hat Linux 6.0RedHat*
Red Hat Linux 6.1RedHat*
Red Hat Linux 6.2RedHat*
Red Hat Linux 7.0RedHat*

References