Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1183

Опубликовано: 08 апр. 2011
Источник: ubuntu
Приоритет: untriaged
EPSS Низкий
CVSS2: 5.8

Описание

Apache Tomcat 7.0.11, when web.xml has no login configuration, does not follow security constraints, which allows remote attackers to bypass intended access restrictions via HTTP requests to a meta-data complete web application. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-1088 and CVE-2011-1419.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

tomcat7 only
hardy

DNE

karmic

not-affected

tomcat7 only
lucid

not-affected

tomcat7 only
maverick

not-affected

tomcat7 only
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 71%
0.0072
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 14 лет назад

Apache Tomcat 7.0.11, when web.xml has no login configuration, does not follow security constraints, which allows remote attackers to bypass intended access restrictions via HTTP requests to a meta-data complete web application. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-1088 and CVE-2011-1419.

nvd
около 14 лет назад

Apache Tomcat 7.0.11, when web.xml has no login configuration, does not follow security constraints, which allows remote attackers to bypass intended access restrictions via HTTP requests to a meta-data complete web application. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-1088 and CVE-2011-1419.

debian
около 14 лет назад

Apache Tomcat 7.0.11, when web.xml has no login configuration, does no ...

github
около 3 лет назад

Access controll bypass in Apache Tomcat

EPSS

Процентиль: 71%
0.0072
Низкий

5.8 Medium

CVSS2