Описание
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| tomcat6 | not-affected | package |
EPSS
Процентиль: 96%
0.2203
Средний
Связанные уязвимости
redhat
почти 15 лет назад
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
nvd
почти 15 лет назад
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
github
больше 3 лет назад
Apache Tomcat allows remote attackers to bypass intended access restrictions
EPSS
Процентиль: 96%
0.2203
Средний