Vulnerability Database

296,147

Total vulnerabilities in the database

CVE-2001-1342

Apache before 1.3.20 on Windows and OS/2 systems allows remote attackers to cause a denial of service (GPF) via an HTTP request for a URI that contains a large number of / (slash) or other characters, which causes certain functions to dereference a null pointer.

  • Published: May 12, 2001
  • Updated: Apr 13, 2023
  • CVE: CVE-2001-1342
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

No CWE or OWASP classifications available.

Software From Fixed in
apache / http_server 1.3.16 1.3.16.x
apache / http_server 1.3.15 1.3.15.x
apache / http_server 1.3.14 1.3.14.x
apache / http_server 1.3.18 1.3.18.x
apache / http_server 1.3.17 1.3.17.x
apache / http_server 1.3.12 1.3.12.x
apache / http_server 1.3.19 1.3.19.x