Description
The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by H D Moore · perlremotewindows
https://www.exploit-db.com/exploits/19975
References (9)
Scores
EPSS
0.4637
EPSS Percentile
97.7%
Details
Status
published
Products (6)
apache/http_server
1.3.6
apache/http_server
1.3.9
apache/http_server
1.3.11
apache/http_server
1.3.12
ibm/http_server
1.3.3
ibm/http_server
1.3.6.2
Published
May 31, 2000
Tracked Since
Feb 18, 2026