httpd: AllowOverride Options=IncludesNoExec allows Options Includes
Published May 28, 2009
4.9
MEDIUMCVSS 2.0
EPSS 1.96%
Description
The Apache HTTP Server 2.2.11 and earlier 2.2 versions does not properly handle Options=IncludesNOEXEC in the AllowOverride directive, which allows local users to gain privileges by configuring (1) Options Includes, (2) Options +Includes, or (3) Options +IncludesNOEXEC in a .htaccess file, and then inserting an exec element in a .shtml file.
Affected products
No data.
- 2.2.0
- 2.2.1
- 2.2.2
- 2.2.3
- 2.2.4
- 2.2.7
- 2.2.8
- 2.2.9
- 2.2.10
No data.
JBEWS 1.0 for RHEL 4
httpd22-0:2.2.10-23.1.ep5.el4
Fixed · RHSA-2009:1160
Red Hat Enterprise Linux 5
httpd-0:2.2.3-22.el5_3.1
Fixed · RHSA-2009:1075
Red Hat JBoss Enterprise Web Server 1 for RHEL 5
httpd-0:2.2.10-10.ep5.el5
Fixed · RHSA-2009:1155
| Product | Package | State | Advisory |
|---|---|---|---|
| JBEWS 1.0 for RHEL 4 | httpd22-0:2.2.10-23.1.ep5.el4 | Fixed | RHSA-2009:1160 |
| Red Hat Enterprise Linux 5 | httpd-0:2.2.3-22.el5_3.1 | Fixed | RHSA-2009:1075 |
| Red Hat JBoss Enterprise Web Server 1 for RHEL 5 | httpd-0:2.2.10-10.ep5.el5 | Fixed | RHSA-2009:1155 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:L/AC:L/Au:N/C:N/I:N/A:C
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (11 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 1.96% (0.01955) | 79.54th | v5 (v2026.06.15) |
| Jun 15, 2026 | 1.96% (0.01955) | 77.59th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.21% (0.00208) | 41.21th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.10% (0.00101) | 43.22th | v3 (v2023.03.01) |
| Feb 16, 2024 | 0.10% (0.00101) | 40.15th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.05% (0.00048) | 14.63th | v3 (v2023.03.01) |
| Mar 6, 2023 | 3.05% (0.03052) | 83.71th | v2 (v2022.01.01) |
| Jul 18, 2022 | 3.05% (0.03052) | 82.72th | v2 (v2022.01.01) |
| Jul 17, 2022 | 1.55% (0.01547) | 73.81th | v2 (v2022.01.01) |
| Apr 1, 2022 | 3.05% (0.03052) | 82.04th | v2 (v2022.01.01) |
| Feb 4, 2022 | 3.05% (0.03052) | 64.53th | v2 (v2022.01.01) |
References (47)
- http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html vendor-advisoryx_refsource_APPLEMailing List
- http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00006.html vendor-advisoryx_refsource_SUSEThird Party Advisory
- http://marc.info/?l=apache-httpd-dev&m=124048996106302&w=2 mailing-listx_refsource_MLISTThird Party Advisory
- http://marc.info/?l=bugtraq&m=129190899612998&w=2 vendor-advisoryx_refsource_HPThird Party Advisory
- http://osvdb.org/54733 vdb-entryx_refsource_OSVDBBroken Link
- http://secunia.com/advisories/35261 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/35264 third-party-advisoryx_refsource_SECUNIAThird Party AdvisoryVendor Advisory
- http://secunia.com/advisories/35395 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/35453 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/35721 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/37152 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://security.gentoo.org/glsa/glsa-200907-04.xml vendor-advisoryx_refsource_GENTOOThird Party Advisory
- http://support.apple.com/kb/HT3937 x_refsource_CONFIRMThird Party Advisory
- http://svn.apache.org/viewvc?view=rev&revision=772997 x_refsource_CONFIRMExploitPatchVendor Advisory
- http://wiki.rpath.com/Advisories:rPSA-2009-0142 x_refsource_CONFIRMThird Party Advisory
- http://www.debian.org/security/2009/dsa-1816 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:124 vendor-advisoryx_refsource_MANDRIVAThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2009-1075.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2009-1156.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.securityfocus.com/archive/1/507852/100/0/threaded mailing-listx_refsource_BUGTRAQThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/507857/100/0/threaded mailing-listx_refsource_BUGTRAQThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/35115 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id?1022296 vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry
- http://www.ubuntu.com/usn/usn-787-1 vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- http://www.vupen.com/english/advisories/2009/1444 vdb-entryx_refsource_VUPENThird Party Advisory
- http://www.vupen.com/english/advisories/2009/3184 vdb-entryx_refsource_VUPENThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2009-1195 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=489436 x_refsource_CONFIRMExploitIssue TrackingPatch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/50808 vdb-entryx_refsource_XFThird Party AdvisoryVDB Entry
- https://lists.apache.org/thread.html/8d63cb8e9100f28a99429b4328e4e7cebce861d5772ac9863ba2ae6f%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/f7f95ac1cd9895db2714fa3ebaa0b94d0c6df360f742a40951384a53%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/r57608dc51b79102f3952ae06f54d5277b649c86d6533dcd6a7d201f7%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/r75cbe9ea3e2114e4271bbeca7aff96117b50c1b6eb7c4772b0337c1f%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/r7dd6be4dc38148704f2edafb44a8712abaa3a2be120d6c3314d55919%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/r84d043c2115176958562133d96d851495d712aa49da155d81f6733be%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/r9ea3538f229874c80a10af473856a81fbf5f694cd7f471cc679ba70b%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/rc4c53a0d57b2771ecd4b965010580db355e38137c8711311ee1073a8%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/rdca61ae990660bacb682295f2a09d34612b7bb5f457577fe17f4d064%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://lists.apache.org/thread.html/rfbaf647d52c1cb843e726a0933f156366a806cead84fbd430951591b%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLISTThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2009-1195
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11094 vdb-entrysignaturex_refsource_OVALThird Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12377 vdb-entrysignaturex_refsource_OVALThird Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8704 vdb-entrysignaturex_refsource_OVALThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2009-1195
- https://www.redhat.com/archives/fedora-package-announce/2009-August/msg01363.html vendor-advisoryx_refsource_FEDORAThird Party Advisory
Change history (0)
No recorded changes yet.