[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250039

 
 

909

 
 

195882

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-27882-0

Platform: apache-httpd2.2Date: (C)2013-02-19   (M)2022-10-10



The Order directive for all DocumentRoot directives should be configured appropriately.


Parameter:

(1) Allow,Deny / Deny,Allow / Mutual-failure


Technical Mechanism:

(1) Apache configuration file: Order directive (in DocumentRoot Directory directive)

CCSS Severity:CCSS Metrics:
CCSS Score : Attack Vector:
Exploit Score: Attack Complexity:
Impact Score: Privileges Required:
Severity: User Interaction:
Vector: Scope:
 Confidentiality:
 Integrity:
 Availability:
  

References:
Resource IdReference
CIS Security Configuration Benchmark For Apache Web Server 2.2 Version 3.1.0 June 11th, 20121.5.7 Limit HTTP Request Methods (Level 1, Scorable) Search for the directive on the document root directory ��� Ensure that the access control order within the directive is allow, deny. Order allow,deny Page 41
CIS Security Configuration Benchmark For Apache Web Server 2.2.0 Version 2.2.0 November 20081.7 Restricting Access p15


CPE    1
cpe:/a:apache:http_server:2.2

© SecPod Technologies