This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:apache:http_server:2.4.0
Detail
VendorApacheFirst view 2012-04-18
ProductHttp ServerLast view2019-09-26
Version2.4.0TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:apache:http_server

Activity : Overall

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
 DateAlertAccess VectorAccess ComplexityAuthentication
4.32019-09-26CVE-2019-10092NetworkMediumNone Requ...
5.82019-09-25CVE-2019-10098NetworkMediumNone Requ...
52019-06-11CVE-2019-0220NetworkLowNone Requ...
62019-04-08CVE-2019-0217NetworkMediumRequires ...
52019-01-30CVE-2018-17199NetworkLowNone Requ...
Hide | Show 20 More...
 DateAlertAccess VectorAccess ComplexityAuthentication
52019-01-30CVE-2018-17189NetworkLowNone Requ...
6.82018-03-26CVE-2018-1312NetworkMediumNone Requ...
52018-03-26CVE-2018-1303NetworkLowNone Requ...
4.32018-03-26CVE-2018-1302NetworkMediumNone Requ...
4.32018-03-26CVE-2018-1301NetworkMediumNone Requ...
3.52018-03-26CVE-2018-1283NetworkMediumRequires ...
6.82018-03-26CVE-2017-15715NetworkMediumNone Requ...
3.32018-03-09CVE-2016-8612Adjacent ...LowNone Requ...
42017-12-11CVE-2014-3250NetworkLowRequires ...
52017-09-18CVE-2017-9798NetworkLowNone Requ...
52017-07-27CVE-2016-2161NetworkLowNone Requ...
52017-07-27CVE-2016-0736NetworkLowNone Requ...
6.42017-07-13CVE-2017-9788NetworkLowNone Requ...
7.52017-06-19CVE-2017-7679NetworkLowNone Requ...
5.12016-07-18CVE-2016-5387NetworkHighNone Requ...
4.32015-07-20CVE-2015-3185NetworkMediumNone Requ...
52015-07-20CVE-2015-3183NetworkLowNone Requ...
52015-03-07CVE-2015-0228NetworkLowNone Requ...
4.32014-12-29CVE-2014-8109NetworkMediumNone Requ...

CWE : Common Weakness Enumeration

%idName
25% (9)CWE-20Improper Input Validation
11% (4)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
8% (3)CWE-399Resource Management Errors
8% (3)CWE-264Permissions, Privileges, and Access Controls
5% (2)CWE-362Race Condition
Hide | Show 13 More...
%idName
5% (2)CWE-200Information Exposure
5% (2)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
2% (1)CWE-601URL Redirection to Untrusted Site ('Open Redirect')
2% (1)CWE-476NULL Pointer Dereference
2% (1)CWE-416Use After Free
2% (1)CWE-400Uncontrolled Resource Consumption ('Resource Exhaustion')
2% (1)CWE-384Session Fixation
2% (1)CWE-310Cryptographic Issues
2% (1)CWE-295Certificate Issues
2% (1)CWE-287Improper Authentication
2% (1)CWE-284Access Control (Authorization) Issues
2% (1)CWE-125Out-of-bounds Read
2% (1)CWE-17Code

Oval Markup Language : Definitions

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalIDName
oval:org.mitre.oval:def:25379RHSA-2014:0920: httpd security update (Important)
oval:org.mitre.oval:def:25253RHSA-2014:0921: httpd security update (Important)
oval:org.mitre.oval:def:26259DSA-2989-1 -- apache2 - security update
oval:org.mitre.oval:def:25884USN-2299-1 -- apache2 vulnerabilities
oval:org.mitre.oval:def:26461SUSE-SU-2014:0967-1 -- Security update for the Apache Web Server
Hide | Show 20 More...
idName
oval:org.mitre.oval:def:27060ELSA-2014-0920 -- httpd security update (important)
oval:org.mitre.oval:def:28909HP-UX Apache Server Suite running Apache Tomcat or PHP, Remote Denial of Ser...
oval:org.mitre.oval:def:18977HP-UX Running Apache, Remote Denial of Service (DoS), Execution of Arbitrary...
oval:org.mitre.oval:def:21017RHSA-2013:0130: httpd security, bug fix, and enhancement update (Low)
oval:org.mitre.oval:def:19539HP-UX Apache Running Tomcat Servlet Engine, Remote Denial of Service (DoS), ...
oval:org.mitre.oval:def:18832HP-UX Running Apache, Remote Denial of Service (DoS), Execution of Arbitrary...
oval:org.mitre.oval:def:23042ELSA-2013:0130: httpd security, bug fix, and enhancement update (Low)
oval:org.mitre.oval:def:26266SUSE-SU-2013:0387-1 -- Security update for apache2
oval:org.mitre.oval:def:27403DEPRECATED: ELSA-2013-0130 -- httpd security, bug fix, and enhancement update...
oval:org.mitre.oval:def:18898HP-UX Apache Web Server running PHP, Remote Execution of Arbitrary Code, Pri...
oval:org.mitre.oval:def:23810USN-2152-1 -- apache2 vulnerabilities
oval:org.mitre.oval:def:24542ELSA-2014:0370: httpd security update (Moderate)
oval:org.mitre.oval:def:24499RHSA-2014:0369: httpd security update (Moderate)
oval:org.mitre.oval:def:24331ELSA-2014:0369: httpd security update (Moderate)
oval:org.mitre.oval:def:24101Apache HTTP vulnerability before 2.2.27 or before 2.4.8 in VisualSVN Server (...
oval:org.mitre.oval:def:24067RHSA-2014:0370: httpd security update (Moderate)
oval:org.mitre.oval:def:26845SUSE-SU-2014:1081-1 -- Security update for apache2
oval:org.mitre.oval:def:26498SUSE-SU-2014:1080-1 -- Security update for apache2
oval:org.mitre.oval:def:26666DEPRECATED: ELSA-2014-0370 -- httpd security update (Moderate)
oval:org.mitre.oval:def:26889HP-UX Apache Server Suite running Apache Tomcat or PHP, Remote Denial of Ser...

OpenVAS Exploits

idDescription
2012-11-26Name : FreeBSD Ports: apache22
File : nvt/freebsd_apache22.nasl
2012-11-09Name : Ubuntu Update for apache2 USN-1627-1
File : nvt/gb_ubuntu_USN_1627_1.nasl
2012-10-03Name : Mandriva Update for apache MDVSA-2012:154-1 (apache)
File : nvt/gb_mandriva_MDVSA_2012_154_1.nasl
2012-08-10Name : FreeBSD Ports: apache
File : nvt/freebsd_apache21.nasl
2012-08-10Name : Gentoo Security Advisory GLSA 201206-25 (apache)
File : nvt/glsa_201206_25.nasl

Information Assurance Vulnerability Management (IAVM)

idDescription
2015-A-0199Multiple Vulnerabilities in Apple Mac OS X
Severity : Category I - VMSKEY : V0061337
2015-A-0174Multiple Vulnerabilities in Apache HTTP Server
Severity : Category I - VMSKEY : V0061135
2015-A-0149Multiple Vulnerabilities in Juniper Networks and Security Manager(NSM) Appliance
Severity : Category I - VMSKEY : V0061101
2014-A-0172Multiple Vulnerabilities in Red Hat JBoss Enterprise Application Platform
Severity : Category I - VMSKEY : V0057381
2014-A-0114Multiple Vulnerabilities in Apache HTTP Server
Severity : Category I - VMSKEY : V0053307
Hide | Show 5 More...
idDescription
2014-A-0084Multiple Vulnerabilities in Apache HTTP Server
Severity : Category I - VMSKEY : V0052631
2014-B-0065Multiple Vulnerabilities in IBM WebSphere Application Server
Severity : Category I - VMSKEY : V0051617
2014-A-0009Multiple Vulnerabilities in Oracle Fusion Middleware
Severity : Category I - VMSKEY : V0043395
2013-A-0177Multiple Vulnerabilities in Red Hat JBoss Enterprise Application Platform
Severity : Category I - VMSKEY : V0040288
2013-A-0146Multiple Security Vulnerabilities in Apache HTTP Server
Severity : Category I - VMSKEY : V0039573

Snort® IPS/IDS

DateDescription
2019-10-17Apache cookie logging denial of service attempt
RuleID : 51547 - Type : SERVER-APACHE - Revision : 1
2018-06-05HTTP request smuggling attempt
RuleID : 46495 - Type : SERVER-OTHER - Revision : 4
2017-10-26Apache HTTP Server possible OPTIONS method memory leak attempt
RuleID : 44434 - Type : SERVER-APACHE - Revision : 5
2017-08-31Apache mod_auth_digest out of bounds read attempt
RuleID : 43790 - Type : SERVER-OTHER - Revision : 2
2017-08-15httpd mod_mime content-type buffer overflow attempt
RuleID : 43547 - Type : SERVER-APACHE - Revision : 2
Hide | Show 5 More...
DateDescription
2017-05-09Apache mod_session_crypto padding oracle brute force attempt
RuleID : 42133 - Type : SERVER-APACHE - Revision : 4
2016-07-28HttpOxy CGI application vulnerability potential man-in-the-middle attempt
RuleID : 39737-community - Type : SERVER-WEBAPP - Revision : 2
2016-08-31HttpOxy CGI application vulnerability potential man-in-the-middle attempt
RuleID : 39737 - Type : SERVER-WEBAPP - Revision : 2
2015-09-01Apache HTTP Server mod_status heap buffer overflow attempt
RuleID : 35406 - Type : SERVER-APACHE - Revision : 4
2014-01-10Apache mod_proxy_balancer cross site scripting attempt
RuleID : 26431 - Type : SERVER-WEBAPP - Revision : 3

Nessus® Vulnerability Scanner

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
2019-01-03Name : The remote Fedora host is missing a security update.
File : fedora_2018-eec13e2e8d.nasl - Type : ACT_GATHER_INFO
2019-01-03Name : The remote Fedora host is missing a security update.
File : fedora_2018-6744ca470d.nasl - Type : ACT_GATHER_INFO
2018-11-27Name : The remote Virtuozzo host is missing a security update.
File : Virtuozzo_VZLSA-2017-2478.nasl - Type : ACT_GATHER_INFO
2018-11-27Name : The remote Virtuozzo host is missing a security update.
File : Virtuozzo_VZLSA-2017-2972.nasl - Type : ACT_GATHER_INFO
2018-08-17Name : The remote PhotonOS host is missing multiple security updates.
File : PhotonOS_PHSA-2017-0027.nasl - Type : ACT_GATHER_INFO
Hide | Show 20 More...
idDescription
2018-08-17Name : The remote PhotonOS host is missing multiple security updates.
File : PhotonOS_PHSA-2018-1_0-0126.nasl - Type : ACT_GATHER_INFO
2018-07-24Name : The remote PhotonOS host is missing multiple security updates.
File : PhotonOS_PHSA-2018-2_0-0037.nasl - Type : ACT_GATHER_INFO
2018-07-24Name : The remote PhotonOS host is missing multiple security updates.
File : PhotonOS_PHSA-2018-2_0-0039.nasl - Type : ACT_GATHER_INFO
2018-07-03Name : The remote EulerOS host is missing a security update.
File : EulerOS_SA-2018-1212.nasl - Type : ACT_GATHER_INFO
2018-07-03Name : The remote EulerOS host is missing multiple security updates.
File : EulerOS_SA-2018-1213.nasl - Type : ACT_GATHER_INFO
2018-05-31Name : The remote Debian host is missing a security update.
File : debian_DLA-1389.nasl - Type : ACT_GATHER_INFO
2018-05-29Name : The remote EulerOS host is missing multiple security updates.
File : EulerOS_SA-2018-1151.nasl - Type : ACT_GATHER_INFO
2018-05-29Name : The remote EulerOS host is missing multiple security updates.
File : EulerOS_SA-2018-1152.nasl - Type : ACT_GATHER_INFO
2018-05-24Name : The remote device is missing a vendor-supplied security patch.
File : f5_bigip_SOL75429050.nasl - Type : ACT_GATHER_INFO
2018-05-14Name : The remote Fedora host is missing a security update.
File : fedora_2018-e6d9251471.nasl - Type : ACT_GATHER_INFO
2018-05-04Name : The remote Amazon Linux AMI host is missing a security update.
File : ala_ALAS-2018-1004.nasl - Type : ACT_GATHER_INFO
2018-04-30Name : The remote Fedora host is missing a security update.
File : fedora_2018-63de5f3f6b.nasl - Type : ACT_GATHER_INFO
2018-04-06Name : The remote Fedora host is missing a security update.
File : fedora_2018-0a95bff197.nasl - Type : ACT_GATHER_INFO
2018-04-06Name : The remote Fedora host is missing a security update.
File : fedora_2018-375e3244b6.nasl - Type : ACT_GATHER_INFO
2018-04-04Name : The remote Debian host is missing a security-related update.
File : debian_DSA-4164.nasl - Type : ACT_GATHER_INFO
2018-03-30Name : The remote web server is affected by multiple vulnerabilities.
File : apache_2_4_30.nasl - Type : ACT_GATHER_INFO
2018-03-27Name : The remote FreeBSD host is missing one or more security-related updates.
File : freebsd_pkg_f38187e72f6e11e88f07b499baebfeaf.nasl - Type : ACT_GATHER_INFO
2018-03-21Name : The remote device is affected by multiple vulnerabilities.
File : juniper_space_jsa_10838.nasl - Type : ACT_GATHER_INFO
2018-01-15Name : The remote Fedora host is missing a security update.
File : fedora_2017-fdd3a98e8f.nasl - Type : ACT_GATHER_INFO
2017-12-07Name : The remote host is missing a macOS update that fixes multiple security vulner...
File : macos_10_13_2.nasl - Type : ACT_GATHER_INFO