๐Ÿ” CVE Alert

CVE-2026-89282

UNKNOWN 0.0

CVE-2026-89282

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The Apache Lounge Windows distribution of Apache HTTP Server build contains an insecure installation directory permissions vulnerability through its default install directory on C:\, which inherits write access for Authenticated Users.

Vendor apache http server project
Product apache lounge windows
Published Sep 22, 2026
Stay Ahead of the Next One

Get instant alerts for apache http server project apache lounge windows

Be the first to know when new unknown vulnerabilities affecting apache http server project apache lounge windows are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Apache HTTP Server Project / Apache Lounge Windows
0 < Apache 2.4.68-260920 Win64

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
httpd.apache.org: https://httpd.apache.org/download.cgi atos.net: https://atos.net/en/lp/cybershield/a-tale-of-several-hijacks-and-what-it-taught-me-about-runtime-driven-testing apachelounge.com: https://www.apachelounge.com/viewtopic.php?t=9515