← back
CVE-2002-0392

CVE-2002-0392

EPSS 95.0%
Vexday Risk Score
60Attention
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS EPSS 95.0%KEV nãoPoC públicaNuclei Metasploit simPatch referenciado
Lifecycle
17 Jun 2002Public PoC
19 Jun 2002Metasploit module available
02 Apr 2003Published on NVD
Recommendation: Plan a near-term fix — a public PoC already exists.
Apache 1.3 through 1.3.24, and Apache 2.0 through 2.0.36, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a chunk-encoded HTTP request that causes Apache to use an incorrect size.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →