← All CVEs

CVE-2001-1342

medium · 5

Apache before 1.3.20 on Windows and OS/2 systems allows remote attackers to cause a denial of service (GPF) via an HTTP request for a URI that contains a large number of / (slash) or other characters, which causes certain functions to dereference a null pointer.

5
CVSS
12.0%
EPSS (exploit prob.)
96th
EPSS percentile
2001-05-12
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
apachehttp_server1.3.12
apachehttp_server1.3.14
apachehttp_server1.3.15
apachehttp_server1.3.16
apachehttp_server1.3.17
apachehttp_server1.3.18
apachehttp_server1.3.19

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2001-1342