Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-3747

Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, and 2.2, when RewriteEngine is enabled, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted URLs that are not properly handled using certain rewrite rules.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.923
EPSS Ranking 99.7%
CVSS Severity
CVSS v2 Score 7.6
References
Products affected by CVE-2006-3747


Contact Us

Shodan ® - All rights reserved