VendorsApachemod_pythonall versions
Vulnerabilities

Apache Software Foundation mod_python

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2005-0088
The publisher handler for mod_python 2.7.8 and earlier allows remote attackers to obtain access to restricted objects via a crafted URL.
Published 2005-02-10 · Modified
7.5EPSS 0.065
CVE-2002-0185
mod_python version 2.7.6 and earlier allows a module indirectly imported by a published module to then be accessed via the publisher, which allows remote attackers to call possibly dangerous functions from the imported module.
Published 2003-04-02 · Modified
7.5EPSS 0.042
CVE-2006-1095
Directory traversal vulnerability in the FileSession object in Mod_python module 3.2.7 for Apache allows local users to execute arbitrary code via a crafted session cookie.
Published 2006-03-09 · Modified
7.2EPSS 0.009
CVE-2003-0973
Unknown vulnerability in mod_python 3.0.x before 3.0.4, and 2.7.x before 2.7.9, allows remote attackers to cause a denial of service (httpd crash) via a certain query string.
Published 2003-12-02 · Modified
5.0EPSS 0.055
CVE-2004-2680
mod_python (libapache2-mod-python) 3.1.4 and earlier does not properly handle when output filters process more than 16384 bytes, which can cause filter.read to return portions of previously freed memory.
Published 2007-03-04 · Modified
5.0EPSS 0.043
CVE-2004-0096
Unknown vulnerability in mod_python 2.7.9 allows remote attackers to cause a denial of service (httpd crash) via a certain query string, a variant of CAN-2003-0973.
Published 2004-09-01 · Modified
5.0EPSS 0.039