Insecure Directory Permissions Vulnerability in Apache HTTP Server by Apache Lounge
CVE-2026-89282
Currently unrated
What is CVE-2026-89282?
The Apache Lounge Windows distribution of the Apache HTTP Server contains a vulnerability caused by insecure installation directory permissions. Specifically, the default installation directory located on C:\ inherits write access for Authenticated Users, which could allow unauthorized modifications to the server configuration or files, creating potential security risks. Proper permission management is vital to safeguard sensitive files and ensure the integrity of web applications hosted on the server.
Affected Version(s)
Apache Lounge Windows 0
