Unrated severityNVD Advisory· Published Aug 14, 2006· Updated Jun 16, 2026
CVE-2006-4110
CVE-2006-4110
Description
Apache 2.2.2, when running on Windows, allows remote attackers to read source code of CGI programs via a request that contains uppercase (or alternate case) characters that bypass the case-sensitive ScriptAlias directive, but allow access to the file on case-insensitive file systems.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:apache:http_server:2.0.58:*:win32:*:*:*:*:*+ 3 more
- cpe:2.3:a:apache:http_server:2.0.58:*:win32:*:*:*:*:*
- cpe:2.3:a:apache:http_server:2.2.2:*:windows:*:*:*:*:*
- cpe:2.3:a:apache:http_server:2.2.3:*:windows:*:*:*:*:*
- (no CPE)range: =2.2.2
Patches
Vulnerability mechanics
References
8- secunia.com/advisories/21490nvdExploitVendor Advisory
- www.securityfocus.com/bid/19447nvdExploit
- securityreason.com/securityalert/1370nvd
- www.osvdb.org/27913nvd
- www.securityfocus.com/archive/1/442882/100/0/threadednvd
- www.securityfocus.com/archive/1/443487/100/200/threadednvd
- www.vupen.com/english/advisories/2006/3265nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/28357nvd
News mentions
0No linked articles in our index yet.