CVE Vulnerabilities

CVE-2003-0017

Published: Feb 07, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Apache 2.0 before 2.0.44 on Windows platforms allows remote attackers to obtain certain files via an HTTP request that ends in certain illegal characters such as >, which causes a different filename to be processed and served.

Affected Software

NameVendorStart VersionEnd Version
Http_serverApache2.0.36 (including)2.0.36 (including)
Http_serverApache2.0.37 (including)2.0.37 (including)
Http_serverApache2.0.38 (including)2.0.38 (including)
Http_serverApache2.0.39 (including)2.0.39 (including)
Http_serverApache2.0.40 (including)2.0.40 (including)
Http_serverApache2.0.41 (including)2.0.41 (including)
Http_serverApache2.0.42 (including)2.0.42 (including)
Http_serverApache2.0.43 (including)2.0.43 (including)

References