CVE-2006-3747
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, and 2.2, when RewriteEngine is enabled, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted URLs that are not properly handled using certain rewrite rules.
- Affected products
- Apache, Apache Http Server, Hp-Ux
- Apache Http Server
- < 1.3.37, 2.0.59, 2.2.3
- Fix
- Available
- CVSS 2.0
- 7.6 HIGH
- EPSS
- 96.6% (100th percentile)
- Weakness
- CWE-189
- NVD status
- Modified
- Published
- 2006-07-28
CVE-2006-3747 at NVD
22 known exploits for CVE-2006-3747
Proof-of-concept code and exploit modules indexed by Sploitus
CVE-2006-3747
Apache < 1.3.37, 2.0.59, 2.2.3 (mod_rewrite) Remote Overflow PoC
Apache mod_rewrite - LDAP protocol Buffer Overflow (Metasploit)
Apache module mod_rewrite LDAP protocol Buffer Overflow
Apache Module mod_rewrite LDAP Protocol Buffer Overflow
apache-mod-rewrite.rb.txt
Apache mod_rewrite LDAP URL buffer overflow
Apache mod_rewrite LDAP URL buffer overflow
Apache mod_rewrite LDAP URL buffer overflow
Apache mod_rewrite LDAP URL buffer overflow
apache2058-rewrite.txt
Apache 2.0.58 mod_rewrite (Windows 2003) - Remote Overflow
Apache Mod_Rewrite Off-by-one Remote Overflow Exploit (win32)
Apache mod_rewrite (Windows x86) - Off-by-One Remote Overflow
Apache mod_rewrite (Windows x86) - Off-by-One Remote Overflow
modrewrite-offbyone.txt
Apache mod_rewrite模块单字节缓冲区溢出漏洞
modrewritepoc.txt
Apache < 1.3.37, 2.0.59, 2.2.3 (mod_rewrite) Remote Overflow PoC
Apache 1.3.372.0.592.2.3 mod_rewrite - Remote Overflow
Apache < 1.3.37/2.0.59/2.2.3 mod_rewrite - Remote Overflow
Apache < 1.3.37 2.0.59 2.2.3 (mod_rewrite) Remote Overflow PoC