Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2006-3747

87
FAUCET Score

CVE-2006-3747 is an off-by-one error in the mod_rewrite module of Apache HTTP Server versions 1.3 (from 1.3.28), 2.0 (before 2.0.59), and 2.2, affecting various Linux distributions. This vulnerability, triggered by crafted URLs with specific rewrite rules, can lead to a denial of service and potentially arbitrary code execution. With a CVSS score of 7.6, it is considered highly severe due to its network attack vector, high impact on confidentiality, integrity, and availability, despite requiring high attack complexity. Although not on the KEV catalog, exploit code is publicly available via Metasploit and ExploitDB, indicating a high potential for exploitation, yet it has received minimal community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 1.3.28, < 1.3.37CPE matchmatch criteria
cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
>= 2.0.46, < 2.0.59CPE matchmatch criteria
cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
>= 2.2.0, < 2.2.3CPE matchmatch criteria
cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
5.04CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*
5.10CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:5.10:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

7.6HIGH

AV:N/AC:H/Au:N/C:C/I:C/A:C

Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
Access Vector
NETWORK
Access Complexity
HIGH
Authentication
NONE
Exploitability Score
4.9
Impact Score
10.0
CvssVersion
2.0

Exploit Intelligence

EPSS Score
96.44%
Probability of exploitation in next 30 days
EPSS Percentile
99.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
Metasploit: Apache Module mod_rewrite LDAP Protocol Buffer Overflow · Jul 28, 2006
ExploitDB: EDB-16752 · Feb 15, 2010
This CVE's current EPSS score of 0.9644 is in the 100th percentile among its peer group of 8,915 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (1)

debianpatch availablevia nvd_reference
View patch

Vendor Advisories (1)

redhatCVE-2006-3747

CVE-2006-3747

References

docs.info.apple.com / article.html
Third Party Advisory
h20000.www2.hp.com / bizsupport/TechSupport/Document.jsp
Third Party Advisory
h20000.www2.hp.com / bizsupport/TechSupport/Document.jsp
Third Party Advisory
kbase.redhat.com / faq/FAQ_68_8653.shtm
Third Party Advisory
lists.apple.com / archives/security-announce/2008/Mar/msg00001.html
Mailing ListThird Party Advisory
lists.apple.com / archives/security-announce/2008//May/msg00001.html
Mailing ListThird Party Advisory
lists.grok.org.uk / pipermail/full-disclosure/2006-July/048267.html
Third Party Advisory
lists.grok.org.uk / pipermail/full-disclosure/2006-July/048271.html
Mailing ListThird Party Advisory
lwn.net / Alerts/194228
Mailing ListThird Party Advisory
marc.info
Mailing ListThird Party Advisory
secunia.com / advisories/21197
Broken Link
secunia.com / advisories/21241
Broken Link
secunia.com / advisories/21245
Broken Link
secunia.com / advisories/21247
Broken Link
secunia.com / advisories/21266
Broken Link
secunia.com / advisories/21273
Broken Link
secunia.com / advisories/21284
Broken Link
secunia.com / advisories/21307
Broken Link
secunia.com / advisories/21313
Broken Link
secunia.com / advisories/21315
Broken Link
secunia.com / advisories/21346
Broken Link
secunia.com / advisories/21478
Broken Link
secunia.com / advisories/21509
Broken Link
secunia.com / advisories/22262
Broken Link
secunia.com / advisories/22368
Broken Link
secunia.com / advisories/22388
Broken Link
secunia.com / advisories/22523
Broken Link
secunia.com / advisories/23028
Broken Link
secunia.com / advisories/23260
Broken Link
secunia.com / advisories/26329
Broken Link
secunia.com / advisories/29420
Broken Link
secunia.com / advisories/29849
Broken Link
secunia.com / advisories/30430
Broken Link
security.gentoo.org / glsa/glsa-200608-01.xml
Third Party Advisory
securityreason.com / securityalert/1312
Third Party Advisory
securitytracker.com / id
Third Party AdvisoryVDB Entry
exchange.xforce.ibmcloud.com / vulnerabilities/28063
Third Party AdvisoryVDB Entry
issues.rpath.com / browse/RPL-538
Broken Link
lists.apache.org / thread.html/54a42d4b01968df1117cea77fc53d6beb931c0e05936ad02af93e9ac%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/5df9bfb86a3b054bb985a45ff9250b0332c9ecc181eec232489e7f79%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/r0276683d8e1e07153fc8642618830ac0ade85b9ae0dc7b07f63bb8fc%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/r2cb985de917e7da0848c440535f65a247754db8b2154a10089e4247b%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/r652fc951306cdeca5a276e2021a34878a76695a9f3cfb6490b4a6840%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/r75cbe9ea3e2114e4271bbeca7aff96117b50c1b6eb7c4772b0337c1f%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/r8828e649175df56f1f9e3919938ac7826128525426e2748f0ab62feb%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/r9e8622254184645bc963a1d47c5d47f6d5a36d6f080d8d2c43b2b142%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/rafd145ba6cd0a4ced113a5823cdaff45aeb36eb09855b216401c66d6%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/rdca61ae990660bacb682295f2a09d34612b7bb5f457577fe17f4d064%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/reb542d2038e9c331506e0cbff881b47e40fbe2bd93ff00979e60cdf7%40%3Ccvs.httpd.apache.org%3E
lists.apache.org / thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E
sunsolve.sun.com / search/document.do
Broken Link
sunsolve.sun.com / search/document.do
Broken Link
svn.apache.org / viewvc
Vendor Advisory
www14.software.ibm.com / webapp/set2/subscriptions/pqvcmjd
Third Party Advisory
www-1.ibm.com / support/docview.wss
Third Party Advisory
www-1.ibm.com / support/docview.wss
Third Party Advisory
www-1.ibm.com / support/docview.wss
Third Party Advisory
www-1.ibm.com / support/docview.wss
Third Party Advisory
apache.org / dist/httpd/Announcement2.0.html
PatchVendor Advisory
debian.org / security/2006/dsa-1131
PatchThird Party Advisory
debian.org / security/2006/dsa-1132
PatchThird Party Advisory
kb.cert.org / vuls/id/395412
Third Party AdvisoryUS Government Resource
mandriva.com / security/advisories
Broken Link
novell.com / linux/security/advisories/2006_43_apache.html
Third Party Advisory
openpkg.org / security/advisories/OpenPKG-SA-2006.015-apache.html
Third Party Advisory
osvdb.org / 27588
Broken Link
securityfocus.com / archive/1/441485/100/0/threaded
Third Party AdvisoryVDB Entry
securityfocus.com / archive/1/441487/100/0/threaded
Third Party AdvisoryVDB Entry
securityfocus.com / archive/1/441526/100/200/threaded
Third Party AdvisoryVDB Entry
securityfocus.com / archive/1/443870/100/0/threaded
Third Party AdvisoryVDB Entry
securityfocus.com / archive/1/445206/100/0/threaded
Third Party AdvisoryVDB Entry
securityfocus.com / archive/1/450321/100/0/threaded
Third Party AdvisoryVDB Entry
securityfocus.com / bid/19204
Third Party AdvisoryVDB Entry
ubuntu.com / usn/usn-328-1
Third Party Advisory
us-cert.gov / cas/techalerts/TA08-150A.html
Third Party AdvisoryUS Government Resource
vupen.com / english/advisories/2006/3017
Permissions Required
vupen.com / english/advisories/2006/3264
Permissions Required
vupen.com / english/advisories/2006/3282
Permissions Required
vupen.com / english/advisories/2006/3884
Permissions Required
vupen.com / english/advisories/2006/3995
Permissions Required
vupen.com / english/advisories/2006/4015
Permissions Required
vupen.com / english/advisories/2006/4207
Permissions Required
vupen.com / english/advisories/2006/4300
Permissions Required
vupen.com / english/advisories/2006/4868
Permissions Required
vupen.com / english/advisories/2007/2783
Permissions Required
vupen.com / english/advisories/2008/0924/references
Permissions Required
vupen.com / english/advisories/2008/1246/references
Permissions Required
vupen.com / english/advisories/2008/1697
Permissions Required