split-logfile in Apache 1.3.20 allows remote attackers to overwrite arbitrary files that end in the .log extension via an HTTP request with a / (slash) in the Host: header.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.098
EPSS Ranking 92.6%