CVE-2001-1385
CVSS 5.0 - MEDIUM
Description
The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the 'engine = off' option for a virtual host, may disable PHP for other virtual hosts, which could cause Apache to serve the source code of PHP scripts.
Affected Products
5| Vendor | Product | Version |
|---|---|---|
| php | php |
4.0
|
| php | php |
4.0.1
|
| php | php |
4.0.3
|
| php | php |
4.0.4
|
| mandrakesoft | mandrake_linux |
7.2
|
References
Weakness Types
NVD-CWE-Other
CVE Information
- CVE ID:
CVE-2001-1385- Published:
- 2001-01-12
- Modified:
- 2026-04-16
- CVSS Score:
- 5.0
- Severity:
- MEDIUM
- Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N
Affected Vendors
mandrakesoft
php
Quick Actions
CVSS Severity Scale
0.0 - 3.9
LOW
4.0 - 6.9
MEDIUM
7.0 - 8.9
HIGH
9.0 - 10.0
CRITICAL