CVE-2021-26690

high

Details

Source: MITRE

Published: 2021-06-10

Updated: 2021-10-20

Type: CWE-476

Risk Information

CVSS v2

Base Score: 5

Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Impact Score: 2.9

Exploitability Score: 10

Severity: MEDIUM

CVSS v3

Base Score: 7.5

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Impact Score: 3.6

Exploitability Score: 3.9

Severity: HIGH

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:* versions from 2.4.0 to 2.4.46 (inclusive)

Configuration 2

OR

cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

Tenable Plugins

View all (23 total)

IDNameProductFamilySeverity
153682EulerOS 2.0 SP9 : httpd (EulerOS-SA-2021-2529)NessusHuawei Local Security Checks
critical
153679EulerOS 2.0 SP9 : httpd (EulerOS-SA-2021-2553)NessusHuawei Local Security Checks
critical
153355EulerOS 2.0 SP2 : httpd (EulerOS-SA-2021-2381)NessusHuawei Local Security Checks
critical
153054EulerOS 2.0 SP5 : httpd (EulerOS-SA-2021-2333)NessusHuawei Local Security Checks
high
152332EulerOS 2.0 SP8 : httpd (EulerOS-SA-2021-2298)NessusHuawei Local Security Checks
high
151694openSUSE 15 Security Update : apache2 (openSUSE-SU-2021:2127-1)NessusSuSE Local Security Checks
critical
151522Amazon Linux AMI : httpd24 (ALAS-2021-1514)NessusAmazon Linux Local Security Checks
critical
151486Debian DLA-2706-1 : apache2 - LTS security updateNessusDebian Local Security Checks
critical
151485Debian DSA-4937-1 : apache2 - security updateNessusDebian Local Security Checks
critical
151436Photon OS 1.0: Httpd PHSA-2021-1.0-0409NessusPhotonOS Local Security Checks
critical
151272Amazon Linux 2 : httpd (ALAS-2021-1674)NessusAmazon Linux Local Security Checks
critical
151196Photon OS 2.0: Httpd PHSA-2021-2.0-0365NessusPhotonOS Local Security Checks
critical
151095SUSE SLED15 / SLES15 Security Update : apache2 (SUSE-SU-2021:2127-1)NessusSuSE Local Security Checks
critical
151068openSUSE 15 Security Update : apache2 (openSUSE-SU-2021:0908-1)NessusSuSE Local Security Checks
critical
151010FreeBSD : Apache httpd -- Multiple vulnerabilities (cce76eca-ca16-11eb-9b84-d4c9ef517024)NessusFreeBSD Local Security Checks
critical
150983Amazon Linux 2 : httpd (ALAS-2021-1659)NessusAmazon Linux Local Security Checks
critical
150942Ubuntu 16.04 LTS : Apache HTTP Server vulnerabilities (USN-4994-2)NessusUbuntu Local Security Checks
critical
150940Ubuntu 18.04 LTS / 20.04 LTS / 20.10 / 21.04 : Apache HTTP Server vulnerabilities (USN-4994-1)NessusUbuntu Local Security Checks
critical
150877SUSE SLED12 / SLES12 Security Update : apache2 (SUSE-SU-2021:2006-1)NessusSuSE Local Security Checks
high
150876SUSE SLES15 Security Update : apache2 (SUSE-SU-2021:2004-1)NessusSuSE Local Security Checks
high
112806Apache 2.4.x < 2.4.48 Multiple VulnerabilitiesWeb Application ScanningComponent Vulnerability
critical
150334Slackware 14.0 / 14.1 / 14.2 / current : httpd (SSA:2021-158-01)NessusSlackware Local Security Checks
critical
150280Apache 2.4.x < 2.4.47 Multiple VulnerabilitiesNessusWeb Servers
critical