Known vulnerabilities in Apache HTTP Server 2.4.2 - page 5

Version: 2.4.2
Software CPE: cpe:2.3:a:apache_foundation:apache_http_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 107
Public exploits: 19
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Apache HTTP Server version 2.4.2 Apache HTTP Server 2.4.2 is affected by 107 vulnerabilities: 2 critical, 11 high, 68 medium, 26 low Critical High Medium Low

Vulnerabilities (107)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU13908 - Improper input validation
CVE-2018-1333
CWE-20 Medium
No
No
2.4.34 18.07.2018 SB2018071805
SB2018071901
SB2018072014
and 6 more
#VU11287 - NULL Pointer Dereference
CVE-2018-1302
CWE-476 Medium
No
No
2.4.32 27.03.2018 SB2018032703
SB2018040502
SB2018050401
and 7 more
#VU11284 - Permissions, Privileges, and Access Controls
CVE-2017-15715
CWE-264 Low
No
No
2.4.32 27.03.2018 SB2018032703
SB2018040401
SB2018040502
and 13 more
#VU11283 - Out-of-bounds write
CVE-2017-15710
CWE-787 Medium
No
No
2.4.32 27.03.2018 SB2018032703
SB2018040401
SB2018040502
and 13 more
#VU11282 - Improper input validation
CVE-2018-1283
CWE-20 Low
No
No
2.4.32 27.03.2018 SB2018032703
SB2018040401
SB2018040502
and 12 more
#VU11281 - Out-of-bounds read
CVE-2018-1301
CWE-125 Medium
No
No
2.4.32 27.03.2018 SB2018032703
SB2018040401
SB2018040502
and 13 more
#VU11280 - Out-of-bounds read
CVE-2018-1303
CWE-125 Medium
No
No
2.4.32 27.03.2018 SB2018032703
SB2018040401
SB2018040502
and 12 more
#VU11279 - Permissions, Privileges, and Access Controls
CVE-2018-1312
CWE-264 Low
No
No
2.4.32 27.03.2018 SB2018032703
SB2018040401
SB2018040502
and 12 more
#VU10953 - Improper input validation
CVE-2016-8612
CWE-20 Low
No
No
- 12.03.2018 SB2016121509
#VU8504 - Use After Free
CVE-2017-9798
CWE-416 Low
Public exploit available
No
- 19.09.2017 SB2017092001
SB2017091801
SB2017092117
and 28 more
#VU7517 - Exposure of sensitive information to an unauthorized actor
CVE-2017-9788
CWE-200 Low
No
No
- 13.07.2017 SB2017062001
SB2017071403
SB2017071307
and 17 more
#VU7119 - Out-of-bounds read
CVE-2017-7679
CWE-125 Medium
Public exploit available
No
- 20.06.2017 SB2017062001
SB2017062807
SB2017063012
and 26 more
#VU7116 - Authentication Bypass Issues
CVE-2017-3169
CWE-592 Medium
Public exploit available
No
- 20.06.2017 SB2017062001
SB2017062807
SB2017063012
and 26 more
#VU7115 - Authentication Bypass Issues
CVE-2017-3167
CWE-592 Medium
No
No
- 20.06.2017 SB2017062001
SB2017062807
SB2017063012
and 25 more
#VU1961 - Improper input validation
CVE-2016-8743
CWE-20 Medium
No
No
- 21.12.2016 SB2016122101
SB2017060704
SB2017073113
and 8 more
#VU1886 - Improper input validation
CVE-2016-2161
CWE-20 Medium
No
No
- 21.12.2016 SB2016122101
SB2017060704
SB2017050921
and 6 more
#VU1800 - Incorrect Behavior Order
CVE-2016-0736
CWE-696 Low
Public exploit available
No
- 21.12.2016 SB2016122101
SB2017060704
SB2017050921
and 6 more
#VU337 - Improper Access Control
CVE-2016-5387
CWE-284 Medium
No
No
- 20.08.2016 SB2016080101
SB2016122101
SB2016071805
and 12 more
#VU32392 - Permissions, Privileges, and Access Controls
CVE-2015-3185
CWE-264 Medium
No
No
2.4.14 21.07.2015 SB2015072101
SB2015101507
#VU33821 - Improper input validation
CVE-2015-3183
CWE-20 Medium
No
No
2.4.14 21.07.2015 SB2015072102
SB2015101506
SB2015081708
and 1 more


Showing elements 81 - 100 out of 107