Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2204

Опубликовано: 29 июн. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 1.9

Описание

Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.17, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.

РелизСтатусПримечание
devel

DNE

hardy

ignored

end of life
lucid

DNE

maverick

DNE

natty

DNE

oneiric

DNE

upstream

released

5.5.34

Показывать по

РелизСтатусПримечание
devel

not-affected

6.0.32-5
hardy

DNE

lucid

released

6.0.24-2ubuntu1.9
maverick

released

6.0.28-2ubuntu1.5
natty

released

6.0.28-10ubuntu2.2
oneiric

not-affected

6.0.32-5
upstream

released

6.0.33

Показывать по

РелизСтатусПримечание
devel

not-affected

7.0.16-3
hardy

DNE

lucid

DNE

maverick

DNE

natty

DNE

oneiric

not-affected

7.0.16-3
upstream

released

7.0.17

Показывать по

EPSS

Процентиль: 23%
0.00074
Низкий

1.9 Low

CVSS2

Связанные уязвимости

redhat
почти 14 лет назад

Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.17, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.

nvd
почти 14 лет назад

Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.17, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.

debian
почти 14 лет назад

Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7 ...

github
около 3 лет назад

Insertion of Sensitive Information into Log File in Apache Tomcat

oracle-oval
больше 13 лет назад

ELSA-2011-1845: tomcat5 security update (MODERATE)

EPSS

Процентиль: 23%
0.00074
Низкий

1.9 Low

CVSS2