CVE-2021-26691

critical

Details

Source: MITRE

Published: 2021-06-10

Updated: 2021-10-20

Type: CWE-787

Risk Information

CVSS v2

Base Score: 7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 10

Severity: HIGH

CVSS v3

Base Score: 9.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 3.9

Severity: CRITICAL

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:* versions from 2.4.0 to 2.4.46 (inclusive)

Configuration 2

OR

cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

Tenable Plugins

View all (26 total)

IDNameProductFamilySeverity
154128Oracle Linux 8 : httpd:2.4 (ELSA-2021-3816)NessusOracle Linux Local Security Checks
critical
154078RHEL 8 : httpd:2.4 (RHSA-2021:3816)NessusRed Hat Local Security Checks
critical
154050CentOS 8 : httpd:2.4 (CESA-2021:3816)NessusCentOS Local Security Checks
critical
153682EulerOS 2.0 SP9 : httpd (EulerOS-SA-2021-2529)NessusHuawei Local Security Checks
critical
153679EulerOS 2.0 SP9 : httpd (EulerOS-SA-2021-2553)NessusHuawei Local Security Checks
critical
153673EulerOS 2.0 SP5 : httpd (EulerOS-SA-2021-2500)NessusHuawei Local Security Checks
critical
153607EulerOS 2.0 SP8 : httpd (EulerOS-SA-2021-2463)NessusHuawei Local Security Checks
critical
153355EulerOS 2.0 SP2 : httpd (EulerOS-SA-2021-2381)NessusHuawei Local Security Checks
critical
151694openSUSE 15 Security Update : apache2 (openSUSE-SU-2021:2127-1)NessusSuSE Local Security Checks
critical
151522Amazon Linux AMI : httpd24 (ALAS-2021-1514)NessusAmazon Linux Local Security Checks
critical
151486Debian DLA-2706-1 : apache2 - LTS security updateNessusDebian Local Security Checks
critical
151485Debian DSA-4937-1 : apache2 - security updateNessusDebian Local Security Checks
critical
151436Photon OS 1.0: Httpd PHSA-2021-1.0-0409NessusPhotonOS Local Security Checks
critical
151272Amazon Linux 2 : httpd (ALAS-2021-1674)NessusAmazon Linux Local Security Checks
critical
151196Photon OS 2.0: Httpd PHSA-2021-2.0-0365NessusPhotonOS Local Security Checks
critical
151095SUSE SLED15 / SLES15 Security Update : apache2 (SUSE-SU-2021:2127-1)NessusSuSE Local Security Checks
critical
151068openSUSE 15 Security Update : apache2 (openSUSE-SU-2021:0908-1)NessusSuSE Local Security Checks
critical
151010FreeBSD : Apache httpd -- Multiple vulnerabilities (cce76eca-ca16-11eb-9b84-d4c9ef517024)NessusFreeBSD Local Security Checks
critical
150983Amazon Linux 2 : httpd (ALAS-2021-1659)NessusAmazon Linux Local Security Checks
critical
150942Ubuntu 16.04 LTS : Apache HTTP Server vulnerabilities (USN-4994-2)NessusUbuntu Local Security Checks
critical
150940Ubuntu 18.04 LTS / 20.04 LTS / 20.10 / 21.04 : Apache HTTP Server vulnerabilities (USN-4994-1)NessusUbuntu Local Security Checks
critical
150877SUSE SLED12 / SLES12 Security Update : apache2 (SUSE-SU-2021:2006-1)NessusSuSE Local Security Checks
high
150876SUSE SLES15 Security Update : apache2 (SUSE-SU-2021:2004-1)NessusSuSE Local Security Checks
high
112806Apache 2.4.x < 2.4.48 Multiple VulnerabilitiesWeb Application ScanningComponent Vulnerability
critical
150334Slackware 14.0 / 14.1 / 14.2 / current : httpd (SSA:2021-158-01)NessusSlackware Local Security Checks
critical
150280Apache 2.4.x < 2.4.47 Multiple VulnerabilitiesNessusWeb Servers
critical