CVE-2001-0042
PHP 3.x (PHP3) on Apache 1.3.6 allows remote attackers to read arbitrary files via a modified .. (dot dot) attack containing "%5c" (encoded backslash) sequences.
- Apache Http Server
- = 1.3
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 9.6% (95th percentile)
- NVD status
- Modified
- Published
- 2004-09-01
CVE-2001-0042 at NVD
1 known exploit for CVE-2001-0042
Proof-of-concept code and exploit modules indexed by Sploitus