split-logfile in Apache 1.3.20 allows remote attackers to...
Moderate severity
Unreviewed
Published
Apr 30, 2022
to the GitHub Advisory Database
•
Updated Apr 3, 2025
Description
Published by the National Vulnerability Database
Oct 30, 2001
Published to the GitHub Advisory Database
Apr 30, 2022
Last updated
Apr 3, 2025
split-logfile in Apache 1.3.20 allows remote attackers to overwrite arbitrary files that end in the .log extension via an HTTP request with a / (slash) in the Host: header.
References