MEDIUM · 4.3

CVE-2007-6514

Apache HTTP Server, when running on Linux with a document root on a Windows share mounted using smbfs, allows remote attackers to obtain unprocessed content such as source files for .php programs via ...

Vulnerability Description

Apache HTTP Server, when running on Linux with a document root on a Windows share mounted using smbfs, allows remote attackers to obtain unprocessed content such as source files for .php programs via a trailing "\" (backslash), which is not handled by the intended AddType directive.

CVSS Score

4.3

MEDIUM

AV:N/AC:M/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
LinuxLinux KernelAll versions
ApacheHttp Server2.2.6

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-6514?

CVE-2007-6514 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Apache HTTP Server, when running on Linux with a document root on a Windows share mounted using smbfs, allows remote attackers to obtain unprocessed content such as source files for .php programs via ...

How severe is CVE-2007-6514?

CVE-2007-6514 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-6514?

Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel, Apache Http Server.