← All CVEs

CVE-2004-0809

medium · 5

The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process crash) via a certain sequence of LOCK requests for a location that allows WebDAV authoring access.

5
CVSS
17.2%
EPSS (exploit prob.)
97th
EPSS percentile
2004-09-16
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
apachehttp_server>= 2.0.35, < 2.0.51
hpsecure_web_server_for_tru644.0_f
hpsecure_web_server_for_tru644.0_g
hpsecure_web_server_for_tru645.0_a
hpsecure_web_server_for_tru645.1
hpsecure_web_server_for_tru645.1_a
hpsecure_web_server_for_tru645.8.1
hpsecure_web_server_for_tru645.8.2
hpsecure_web_server_for_tru645.9.1
hpsecure_web_server_for_tru645.9.2
hpsecure_web_server_for_tru646.3.0
gentoolinux1.4
hphp-ux11.00
hphp-ux11.11
hphp-ux11.22
hphp-ux11.23
mandrakesoftmandrake_linux9.2
mandrakesoftmandrake_linux9.2
mandrakesoftmandrake_linux10.0
mandrakesoftmandrake_linux10.0
redhatenterprise_linux3.0
redhatenterprise_linux3.0
redhatenterprise_linux3.0
redhatenterprise_linux_desktop3.0
trustixsecure_linux2.0
trustixsecure_linux2.1
turbolinuxturbolinux_desktop10.0
turbolinuxturbolinux_homeall versions
turbolinuxturbolinux_server10.0
debiandebian_linux3.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-0809