Back

CVE-2000-1204

Vulnerability in the mod_vhost_alias virtual hosting module for Apache 1.3.9, 1.3.11 and 1.3.12 allows remote attackers to obtain the source code for CGI programs if the cgi-bin directory is under the document root.

Published: Oct 13, 2000 Modified: Apr 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
apache http_server 1.3.9
apache http_server 1.3.11
apache http_server 1.3.12

GitHub Security Advisory GHSA-8vvr-9c5j-9q97

Vulnerability in the mod_vhost_alias virtual hosting module for Apache 1.3.9, 1.3.11 and 1.3.12...

References (14)

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 10.51%

Top 5% most likely to be exploited

Threat Score 23.2 / 100

Data Sources

NVD EPSS GitHub