Record summary

CVE-2014-0226 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1
Repository PoCs
1

Proofs of concept

2

Catalogued exploits

ExploitDBApache 2.4.7 mod_status - Scoreboard Handling Race ConditionExploitDB exploitby Marek KroemekeNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubshreesh1/CVE-2014-0226-pocRepository PoCby shreesh1Stars: 0Not analyzed2 files

265.4 KiB

GitHub

PoC details

References

Showing 12 of 75