CNCVE编号:CNCVE-20010108 CVE编号:CVE-2001-0108 安全级别:中 漏洞中文描述: PHP Apache module 4.0.4及其早期版本允许远程攻击者通过在一个没有限制的页面上发送变形的HTTP请求(这将引发PHP在下一个请求的页面中使用那些存取控制)来绕过.htaccess权限限制。 漏洞英文描述: PHP Apache module 4.0.4 and earlier allows remote attackers to bypass .htaccess access restrictions via a malformed HTTP request on an unrestricted page that causes PHP to use those access controls on the next page that is requested. 漏洞参考: BID:2206 BUGTRAQ:20010112 PHP Security Advisory - Apache Module bugs 系统类型:其他 漏洞类型:环境错误