Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2001-0766

EPSS 11.43% · P94
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2001-0766

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched by Apache's filters.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
MacOS X Client Apache文件保护绕过漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
CVE(CAN) ID: CAN-2001-0766 当使用MacOS X Client访问Apache服务器时存在安全漏洞。MacOS X的标准文件系统是 HFS+,它对大小写是不敏感的,而Apache对大小写的过滤是大小写敏感的。 因此,Apache只能过滤精确匹配的请求,却不会过滤大小写混合或全是大写的请求,而 HFS+是大小写不敏感的,这就导致这些被"过滤"的请求成功响应。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2001-0766

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2001-0766

登录查看更多情报信息。

Same Patch Batch · n/a · 2001-10-12 · 45 CVEs total

CVE-2001-0780Directory Pro 泄露文件内容漏洞
CVE-2001-0783Cisco TFTPD Server 目录遍历漏洞
CVE-2001-0782KDE ktvision特权提升漏洞
CVE-2001-0785AMLServer 目录遍历漏洞
CVE-2001-0789Sendmail Kaspersky KAV格式字符串漏洞
CVE-2001-0790Specter IDS服务拒绝(CPU消耗)漏洞
CVE-2001-0791Windows NT的Trend Micro InterScan VirusWall更改配置漏洞
CVE-2001-0794A-FTP Anonymous FTP Server缓冲区溢出漏洞
CVE-2001-0795Perception LiteServe 脚本源代码泄漏
CVE-2001-0788AMLServer 泄漏物理路径
CVE-2001-0781SpoonFTP缓冲区溢出漏洞
CVE-2001-0778OmniHTTPd源代码获得漏洞
CVE-2001-0777Omnicron OmniHTTPD PHP 拒绝服务漏洞
CVE-2001-0776DynFX MailServer POP3d拒绝服务漏洞
CVE-2001-0775xloadimage 缓冲区溢出漏洞
CVE-2001-0772HP-UX Common Desktop Environment (CDE)模块缓冲区溢出漏洞
CVE-2001-0771Spytech SpyAnywhere未经授权管理员访问漏洞
CVE-2001-0768GuildFTPD 口令明文保存漏洞
CVE-2001-0767GuildFTPD 目录遍历漏洞
CVE-2001-0762su-wrapper缓冲区溢出漏洞

Showing top 20 of 45 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2001-0766

No comments yet


Leave a comment