Vulnerabilities
Vulnerable Software
Apache:  >> Http Server  >> 2.2.3  Security Vulnerabilities
Format string vulnerability in the mod_tcl module 1.0 for Apache 2.x allows context-dependent attackers to execute arbitrary code via format string specifiers that are not properly handled in a set_var function call in (1) tcl_cmds.c and (2) tcl_core.c.
CVSS Score
6.8
EPSS Score
0.16
Published
2006-10-16
Apache 2.2.2, when running on Windows, allows remote attackers to read source code of CGI programs via a request that contains uppercase (or alternate case) characters that bypass the case-sensitive ScriptAlias directive, but allow access to the file on case-insensitive file systems.
CVSS Score
4.3
EPSS Score
0.394
Published
2006-08-14


Contact Us

Shodan ® - All rights reserved