Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Apache on MacOS X Client 10.0.3 with the HFS+ file system allows remote attackers to bypass access restrictions via a URL that contains some characters whose case is not matched by Apache's filters.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MacOS X Client Apache文件保护绕过漏洞
Vulnerability Description
CVE(CAN) ID: CAN-2001-0766 当使用MacOS X Client访问Apache服务器时存在安全漏洞。MacOS X的标准文件系统是 HFS+,它对大小写是不敏感的,而Apache对大小写的过滤是大小写敏感的。 因此,Apache只能过滤精确匹配的请求,却不会过滤大小写混合或全是大写的请求,而 HFS+是大小写不敏感的,这就导致这些被"过滤"的请求成功响应。
CVSS Information
N/A
Vulnerability Type
N/A