New Search

Apache Mod_Access Access Control Rule Bypass Vulnerability

oval:org.mitre.oval:def:4670

mod_access in Apache 1.3 before 1.3.30 when running big-endian 64-bit platforms does not properly parse Allow/Deny rules using IP addresses without a netmask which could allow remote attackers to bypass intended access restrictions.

Family:
unix
Status:
ACCEPTED
Platform(s):
  • Sun Solaris 9
  • Sun Solaris 8
Class:
vulnerability
Reference(s):
  • CVE-2003-0993
Product(s):
  • Apache