CVE-2004-0942

Apache HTTP Server < 2.0.52 - Denial of Service via MIME Header with Excessive Spaces

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2004-0942. PoCs published by GreenwooD.

AI-analyzed exploit summary This Perl script exploits CVE-2004-0942, a DoS vulnerability in Apache <= 2.0.52 by sending a malformed HTTP request with excessive headers. It floods the target with large header data to crash the server.

Description

Apache webserver 2.0.52 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request with a MIME header containing multiple lines with a large number of space characters.

Exploits (1)

exploitdb WORKING POC VERIFIED
by GreenwooD · perldosmultiple
https://www.exploit-db.com/exploits/855

This Perl script exploits CVE-2004-0942, a DoS vulnerability in Apache <= 2.0.52 by sending a malformed HTTP request with excessive headers. It floods the target with large header data to crash the server.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Apache HTTP Server <= 2.0.52
No auth needed
Prerequisites: Network access to the target Apache server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (26)

Core 26
Core References
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2004-562.html
Vendor Advisory vendor-advisory x_refsource_mandrake
http://www.mandriva.com/security/advisories?name=MDKSA-2004:135
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17930
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/19072
Various Sources vendor-advisory x_refsource_hp
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX01123
Mailing List vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html
Vendor Advisory vendor-advisory x_refsource_trustix
http://www.trustix.org/errata/2004/0061/
Mailing List vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=110384374213596&w=2
Mailing List vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10962
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102198-1
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/0789

Scores

EPSS 0.5511
EPSS Percentile 98.9%

Details

Status published
Products (1)
apache/http_server < 2.0.52
Published Feb 09, 2005
Tracked Since Feb 18, 2026