CVE-2003-0245

Apache APR <2.0.46 - RCE/DoS

Title source: llm

Description

Vulnerability in the apr_psprintf function in the Apache Portable Runtime (APR) library for Apache 2.0.37 through 2.0.45 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long strings, as demonstrated using XML objects to mod_dav, and possibly other vectors.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Matthew Murphy · perldoslinux
https://www.exploit-db.com/exploits/38

References (22)

... and 2 more

Scores

EPSS 0.8408
EPSS Percentile 99.3%

Details

Status published
Products (9)
apache/http_server 2.0.37
apache/http_server 2.0.38
apache/http_server 2.0.39
apache/http_server 2.0.40
apache/http_server 2.0.41
apache/http_server 2.0.42
apache/http_server 2.0.43
apache/http_server 2.0.44
apache/http_server 2.0.45
Published Jun 09, 2003
Tracked Since Feb 18, 2026