Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2002-0654

EPSS 75.04% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2002-0654

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file, which leaks the pathname in the resulting error message, or (2) via an error message that occurs when a script (child process) cannot be invoked.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Apache 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Apache是一款广泛流行的开放源代码的WEB服务程序。Apache 2.0.40以前的for windows版本中存在一个泄漏物理路径漏洞,远程攻击者可以利用这个漏洞获得服务器物理路径信息。当客户端请求一个.var后缀的不存在的文件时,Apache 2.0.x for Windows会返回一些出错信息。这些信息中包含Apache的物理路径,这可能允许攻击者了解服务器的配置情况,可能有助于发动进一步攻击。Unix和其他平台的Apache Web服务程序不受此漏洞影响,Cygwin用户受到此漏洞影响。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2002-0654

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2002-0654

登录查看更多情报信息。

Same Patch Batch · n/a · 2002-08-20 · 8 CVEs total

CVE-2002-0093Tru64 IPCS本地缓冲区溢出漏洞
CVE-2002-0721Microsoft SQL Server扩展存储过程权限提升漏洞(MS02-043)
CVE-2002-0725Microsoft Windows NTFS文件硬连接操作审核不正确漏洞
CVE-2002-0857Oracle Listener Control 工具格式串漏洞
CVE-2002-0858Oracle catalog创建默认用户/口令漏洞
CVE-2002-0870Cisco Content Service Switch认证绕过漏洞
CVE-2002-0874RedHat Interchange远程泄漏任意文件漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2002-0654

No comments yet


Leave a comment