AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2013-1896

MEDIUM · CVSS 4.3 EPSS 29.48%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2013-07-10 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.3. It affects Apache. Its EPSS score suggests a 29.5% probability of exploitation in the next 30 days. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2013-1896
Severity
MEDIUM
CVSS
4.3
EPSS
29.48%
Apache

Original NVD Description

mod_dav.c in the Apache HTTP Server before 2.2.25 does not properly determine whether DAV is enabled for a URI, which allows remote attackers to cause a denial of service (segmentation fault) via a MERGE request in which the URI is configured for handling by the mod_dav_svn module, but a certain href attribute in XML data refers to a non-DAV URI.