关于 CVE-2010-0425 的漏洞信息

1. 漏洞描述
From NVD
modules/arch/win32/mod_isapi.c in mod_isapi in the Apache HTTP Server 2.0.37 through 2.0.63, 2.2.0 through 2.2.14, and 2.3.x before 2.3.7, when running on Windows, does not ensure that request processing is complete before calling isapi_unload for an ISAPI .dll module, which allows remote attackers to execute arbitrary code via unspecified vectors related to a crafted request, a reset packet, and "orphaned callback pointers."
From 神龙GPT (AIGC)
在Apache HTTP Server 2.0.37 到 2.0.63,2.2.0 到 2.2.14 以及 2.3.x 之前 2.3.7 版本的 mod_isapi 模块中,在调用 isapi_unload 时,不会确保请求处理已完成,这可能导致远程攻击者通过与构造的请求、重置包以及“孤儿回调指针”相关的未定义的向量执行任意代码。
2. 漏洞评分(CVSS)
From NVD
NVD 暂无评分
From 神龙GPT (AIGC)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
3. 漏洞类别
From NVD
NVD 暂无漏洞类别信息
From 神龙GPT (AIGC)
神龙GPT 暂无漏洞类别信息(请耐心等待)
Reference