Описание
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| tomcat6 | not-affected | package |
EPSS
Процентиль: 93%
0.06453
Низкий
Связанные уязвимости
redhat
больше 15 лет назад
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
nvd
больше 15 лет назад
Apache Tomcat 7.x before 7.0.10 does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application.
github
больше 4 лет назад
Apache Tomcat allows remote attackers to bypass intended access restrictions
EPSS
Процентиль: 93%
0.06453
Низкий