Total vulnerabilities in the database
The ap_log_rerror function in Apache 2.0 through 2.035, when a CGI application encounters an error, sends error messages to the client that include the full path for the server, which allows remote attackers to obtain sensitive information.
Software | From | Fixed in |
---|---|---|
apache / http_server | 2.0.35 | 2.0.35.x |
apache / http_server | 2.0.32 | 2.0.32.x |
apache / http_server | 2.0.28 | 2.0.28.x |
apache / http_server | 2.0 | 2.0.x |