← Back

CVE-2010-0425

nvd nist
Published: Mar 5, 2010Modified: Jul 24, 2025

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

modules/arch/win32/mod_isapi.c in mod_isapi in the Apache HTTP Server 2.0.37 through 2.0.63, 2.2.0 through 2.2.14, and 2.3.x before 2.3.7, when running on Windows, does not ensure that request processing is complete before calling isapi_unload for an ISAPI .dll module, which allows remote attackers to execute arbitrary code via unspecified vectors related to a crafted request, a reset packet, and "orphaned callback pointers."

Affected (41)

Show all products
2 products
Websphere Application Server
Http Server
1 product
Http Server
1 product
Http Server
1 product
Vmware Ace Management Server
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.1 to 6.1.0.31
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Apache
From 2.0.37 to 2.0.64
From 2.2.0 to 2.2.15
From 2.3.0 to 2.3.7
Configuration C
35 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Ibm
Version 6.0.2.11
Version 6.0.2.13
Version 6.0.2.15
Version 6.0.2.19
Version 6.0.2.1
Version 6.0.2.21
Version 6.0.2.23
Version 6.0.2.25
Version 6.0.2.27
Version 6.0.2.29
Version 6.0.2.31
Version 6.0.2.33
Version 6.0.2.35
Version 6.0.2.37
Version 6.0.2.39
Version 6.0.2.3
Version 6.0.2.7
Version 6.0.2.9
Version 6.0.2
Version 6.1.0.11
Version 6.1.0.13
Version 6.1.0.15
Version 6.1.0.17
Version 6.1.0.19
Version 6.1.0.21
Version 6.1.0.23
Version 6.1.0.25
Version 6.1.0.27
Version 6.1.0.29
Version 6.1.0.2
Version 6.1.0.3
Version 6.1.0.5
Version 6.1.0.7
Version 6.1.0.9
Version 6.1
Running on/withPlatform Versions
Microsoft
Windows
All versions
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 10.1.3.5.0
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2.7.2

References (84)

Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Broken Link
Source: secalert@redhat.com
Broken Link
Source: secalert@redhat.com
Permissions Required
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Third Party AdvisoryUS Government Resource
Source: secalert@redhat.com
Broken LinkExploit
Source: secalert@redhat.com
Broken Link
Source: secalert@redhat.com
Third Party AdvisoryURL Repurposed
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Broken LinkVendor Advisory
Source: secalert@redhat.com
Broken LinkIssue TrackingMailing ListVendor Advisory
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkExploit
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryURL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkIssue TrackingMailing ListVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.