Lucene search

K
nvd[email protected]NVD:CVE-2002-0392
HistoryJul 03, 2002 - 4:00 a.m.

CVE-2002-0392

2002-07-0304:00:00
web.nvd.nist.gov
7

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.753

Percentile

98.2%

Apache 1.3 through 1.3.24, and Apache 2.0 through 2.0.36, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a chunk-encoded HTTP request that causes Apache to use an incorrect size.

Affected configurations

Nvd
Node
apachehttp_serverRange1.2.21.3.24
OR
apachehttp_serverRange2.0.02.0.36
Node
debiandebian_linuxMatch2.2
VendorProductVersionCPE
apachehttp_server*cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
debiandebian_linux2.2cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*

References

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.753

Percentile

98.2%