MDKSA-2001:077Vendor advisory
http://frontal2.mandriva.com/security/advisories?name=MDKSA-2001:077 CVE-2001-0731
Apache 1.3 - Directory Index Disclosure
Record summary
CVE-2001-0731 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
Apache 1.3.20 with Multiviews enabled allows remote attackers to view directory contents and bypass the index page via a URL containing the "M=D" query string.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBApache 1.3 - Directory Index DisclosureExploitDB exploitby KevinNot analyzed1 file
References
Showing 12 of 19apacheweek.comConfirmation
http://www.apacheweek.com/issues/01-10-05 RHSA-2001:126Vendor advisory
http://www.redhat.com/support/errata/RHSA-2001-126.html RHSA-2001:164Vendor advisory
http://www.redhat.com/support/errata/RHSA-2001-164.html 20010709 How Google indexed a file with no external linkmailing list
http://www.securityfocus.com/archive/1/20010709214744.A28765%40brasscannon.net securityfocus.com
http://www.securityfocus.com/archive/1/20010709214744.A28765@brasscannon.net 3009vdb entry
http://www.securityfocus.com/bid/3009 apache-multiviews-directory-listing(8275)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/8275 [httpd-cvs] 20210330 svn commit: r1073140 [1/4] - in /websites/staging/httpd/trunk/content: ./ security/cvejsontohtml.py security/vulnerabilities_13.html security/vulnerabilities_20.html security/vulnerabilities_22.html security/vulnerabilities_24.htmlmailing list
https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E lists.apache.org
https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5@%3Ccvs.httpd.apache.org%3E [httpd-cvs] 20210603 svn commit: r1075360 [1/3] - in /websites/staging/httpd/trunk/content: ./ security/json/CVE-2021-31618.json security/vulnerabilities_13.html security/vulnerabilities_20.html security/vulnerabilities_22.html security/vulnerabilities_24.htmlmailing list
https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E lists.apache.org
https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4@%3Ccvs.httpd.apache.org%3E