Added |
CPE Configuration |
|
OR
*cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:* versions from (including) 2.4.17 up to (including) 2.4.38
|
Added |
CPE Configuration |
|
OR
*cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
*cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
*cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
*cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*
|
Added |
CPE Configuration |
|
OR
*cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
|
Added |
CPE Configuration |
|
OR
*cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*
*cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:*
|
Added |
CVSS V2 |
|
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
|
Added |
CVSS V3 |
|
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
Added |
CWE |
|
CWE-264
|
Changed |
Reference Type |
http://packetstormsecurity.com/files/152386/Apache-2.4.38-Root-Privilege-Escalation.html No Types Assigned
|
http://packetstormsecurity.com/files/152386/Apache-2.4.38-Root-Privilege-Escalation.html Third Party Advisory, VDB Entry
|
Changed |
Reference Type |
http://packetstormsecurity.com/files/152415/Slackware-Security-Advisory-httpd-Updates.html No Types Assigned
|
http://packetstormsecurity.com/files/152415/Slackware-Security-Advisory-httpd-Updates.html Third Party Advisory, VDB Entry
|
Changed |
Reference Type |
http://packetstormsecurity.com/files/152441/CARPE-DIEM-Apache-2.4.x-Local-Privilege-Escalation.html No Types Assigned
|
http://packetstormsecurity.com/files/152441/CARPE-DIEM-Apache-2.4.x-Local-Privilege-Escalation.html Exploit, Third Party Advisory, VDB Entry
|
Changed |
Reference Type |
http://www.apache.org/dist/httpd/CHANGES_2.4.39 No Types Assigned
|
http://www.apache.org/dist/httpd/CHANGES_2.4.39 Vendor Advisory
|
Changed |
Reference Type |
http://www.openwall.com/lists/oss-security/2019/04/02/3 No Types Assigned
|
http://www.openwall.com/lists/oss-security/2019/04/02/3 Mailing List, Third Party Advisory
|
Changed |
Reference Type |
http://www.securityfocus.com/bid/107666 No Types Assigned
|
http://www.securityfocus.com/bid/107666 Third Party Advisory, VDB Entry
|
Changed |
Reference Type |
https://httpd.apache.org/security/vulnerabilities_24.html No Types Assigned
|
https://httpd.apache.org/security/vulnerabilities_24.html Vendor Advisory
|
Changed |
Reference Type |
https://lists.apache.org/thread.html/b1613d44ec364c87bb7ee8c5939949f9b061c05c06e0e90098ebf7aa@%3Cusers.httpd.apache.org%3E No Types Assigned
|
https://lists.apache.org/thread.html/b1613d44ec364c87bb7ee8c5939949f9b061c05c06e0e90098ebf7aa@%3Cusers.httpd.apache.org%3E Mailing List, Vendor Advisory
|
Changed |
Reference Type |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EZRMTEIGZKYFNGIDOTXN3GNEJTLVCYU7/ No Types Assigned
|
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EZRMTEIGZKYFNGIDOTXN3GNEJTLVCYU7/ Third Party Advisory
|
Changed |
Reference Type |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WETXNQWNQLWHV6XNW6YTO5UGDTIWAQGT/ No Types Assigned
|
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WETXNQWNQLWHV6XNW6YTO5UGDTIWAQGT/ Third Party Advisory
|
Changed |
Reference Type |
https://seclists.org/bugtraq/2019/Apr/16 No Types Assigned
|
https://seclists.org/bugtraq/2019/Apr/16 Mailing List, Third Party Advisory
|
Changed |
Reference Type |
https://seclists.org/bugtraq/2019/Apr/5 No Types Assigned
|
https://seclists.org/bugtraq/2019/Apr/5 Mailing List, Third Party Advisory
|
Changed |
Reference Type |
https://usn.ubuntu.com/3937-1/ No Types Assigned
|
https://usn.ubuntu.com/3937-1/ Third Party Advisory
|
Changed |
Reference Type |
https://www.debian.org/security/2019/dsa-4422 No Types Assigned
|
https://www.debian.org/security/2019/dsa-4422 Third Party Advisory
|
Changed |
Reference Type |
https://www.exploit-db.com/exploits/46676/ No Types Assigned
|
https://www.exploit-db.com/exploits/46676/ Exploit, Third Party Advisory, VDB Entry
|