Описание
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
tomcat6 | not-affected | package |
EPSS
Процентиль: 94%
0.13628
Средний
Связанные уязвимости
redhat
больше 14 лет назад
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
nvd
больше 14 лет назад
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
github
около 3 лет назад
Apache Tomcat allows remote attackers to bypass intended access restrictions
EPSS
Процентиль: 94%
0.13628
Средний