Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7g59-hm8v-cwmc

Опубликовано: 02 мая 2022
Источник: github
Github: Прошло ревью

Описание

Apache Tomcat information disclosure vulnerability

The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 through 5.5.20 does not return a -1 to indicate when a certain error condition has occurred, which can cause Tomcat to send POST content from one request to a different request.

Пакеты

Наименование

org.apache.tomcat:tomcat

maven
Затронутые версииВерсия исправления

>= 4.1.32, < 4.1.35

4.1.35

Наименование

org.apache.tomcat:tomcat

maven
Затронутые версииВерсия исправления

>= 5.5.10, < 5.5.21

5.5.21

EPSS

Процентиль: 91%
0.07583
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 16 лет назад

The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 through 5.5.20 does not return a -1 to indicate when a certain error condition has occurred, which can cause Tomcat to send POST content from one request to a different request.

redhat
больше 16 лет назад

The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 through 5.5.20 does not return a -1 to indicate when a certain error condition has occurred, which can cause Tomcat to send POST content from one request to a different request.

nvd
больше 16 лет назад

The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 through 5.5.20 does not return a -1 to indicate when a certain error condition has occurred, which can cause Tomcat to send POST content from one request to a different request.

debian
больше 16 лет назад

The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 th ...

EPSS

Процентиль: 91%
0.07583
Низкий

Дефекты

CWE-200