CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. It affects Apache. Its EPSS score suggests a 29.5% probability of exploitation in the next 30 days. It may be remotely exploitable. It may lead to a denial-of-service condition.
CVE
CVE-2013-1896
Severity
MEDIUM
CVSS
4.3
EPSS
29.48%
Apache
Original NVD Description
mod_dav.c in the Apache HTTP Server before 2.2.25 does not properly determine whether DAV is enabled for a URI, which allows remote attackers to cause a denial of service (segmentation fault) via a MERGE request in which the URI is configured for handling by the mod_dav_svn module, but a certain href attribute in XML data refers to a non-DAV URI.