296,843
Total vulnerabilities in the database
Apache 2.2.2, when running on Windows, allows remote attackers to read source code of CGI programs via a request that contains uppercase (or alternate case) characters that bypass the case-sensitive ScriptAlias directive, but allow access to the file on case-insensitive file systems.
| Software | From | Fixed in | 
|---|---|---|
| apache / http_server | 2.0.58 | 2.0.58.x | 
| apache / http_server | 2.2.2 | 2.2.2.x | 
| apache / http_server | 2.2.3 | 2.2.3.x |