CVE detail
CVE-2005-2963 — CVE-2005-2963
Published 2005-10-13 · Modified 2026-06-16 · Vendor mod_auth_shadow · Product mod_auth_shadow · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0244
EPSS probability
exploitation probability, 30d
83.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The mod_auth_shadow module 1.0 through 1.5 and 2.0 for Apache with AuthShadow enabled uses shadow authentication for all locations that use the require group directive, even when other authentication mechanisms are specified, which might allow remote authenticated users to bypass security restrictions.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References