CVE-2002-1592
The ap_log_rerror function in Apache 2.0 through 2.035, when a CGI application encounters an error, sends error messages to the client that include the full path for the server, which allows remote attackers to obtain sensitive information.
Scoring
- CVSS base score
- 0.22
- EPSS probability
- 5.52%
- Published
- 2005-03-13
- Last modified
- 2026-03-16
Affected products
- n/a n/a