CVE-2003-1054

mod_access_referer 1.0.2 allows remote attackers to cause a denial of service (crash) via a malformed Referer header that is missing a hostname, as parsed by the ap_parse_uri_components function in Apache, which triggers a null dereference.

Scoring

CVSS base score
0.28
EPSS probability
7.09%
Published
2005-01-19
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs