Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Tomcat

Tomcatконтейнер сервлетов с открытым исходным кодом

Релизный цикл, информация об уязвимостях

Продукт: Tomcat
Вендор: apache

График релизов

9.010.010.111.0201720182019202020212022202320242025202620272028

Недавние уязвимости Tomcat

Количество 1 466

github логотип

GHSA-v6c7-8qx5-8gmp

около 4 лет назад

Deserialization of Untrusted Data in Apache Tomcat

EPSS: Низкий
github логотип

GHSA-cw29-r48c-h5f9

около 4 лет назад

org/apache/catalina/core/DefaultInstanceManager.java in Apache Tomcat 7.x before 7.0.22 does not properly restrict ContainerServlets in the Manager application, which allows local users to gain privileges by using an untrusted web application to access the Manager application's functionality.

EPSS: Низкий
github логотип

GHSA-r7c8-hghc-2mp8

около 4 лет назад

Apache Tomcat Allows Replacing of XML Parser

EPSS: Низкий
github логотип

GHSA-3p5r-7cw3-2m67

около 4 лет назад

Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat

EPSS: Низкий
github логотип

GHSA-vch7-92vf-jm44

около 4 лет назад

Apache Tomcat does not follow ServletSecurity annotations

EPSS: Низкий
github логотип

GHSA-9xrj-439h-62hg

около 4 лет назад

Improper Authentication in Apache Tomcat

EPSS: Низкий
github логотип

GHSA-28cq-6rmx-pjq4

около 4 лет назад

Improper Authentication in Apache Tomcat

EPSS: Средний
github логотип

GHSA-h6c8-rg87-f3pc

около 4 лет назад

Apache Tomcat HTTP BIO Connector Error Discloses Information From Different Requests to Remote Users

EPSS: Низкий
github логотип

GHSA-cpr9-82wf-f629

около 4 лет назад

java/org/apache/coyote/http11/InternalNioInputBuffer.java in the HTTP NIO connector in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.28 does not properly restrict the request-header size, which allows remote attackers to cause a denial of service (memory consumption) via a large amount of header data.

EPSS: Низкий
github логотип

GHSA-jgm2-m5cg-f66g

около 4 лет назад

Authentication Bypass in Apache Tomcat

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-v6c7-8qx5-8gmp

Deserialization of Untrusted Data in Apache Tomcat

7%
Низкий
около 4 лет назад
github логотип
GHSA-cw29-r48c-h5f9

org/apache/catalina/core/DefaultInstanceManager.java in Apache Tomcat 7.x before 7.0.22 does not properly restrict ContainerServlets in the Manager application, which allows local users to gain privileges by using an untrusted web application to access the Manager application's functionality.

1%
Низкий
около 4 лет назад
github логотип
GHSA-r7c8-hghc-2mp8

Apache Tomcat Allows Replacing of XML Parser

1%
Низкий
около 4 лет назад
github логотип
GHSA-3p5r-7cw3-2m67

Exposure of Sensitive Information to an Unauthorized Actor in Apache Tomcat

7%
Низкий
около 4 лет назад
github логотип
GHSA-vch7-92vf-jm44

Apache Tomcat does not follow ServletSecurity annotations

7%
Низкий
около 4 лет назад
github логотип
GHSA-9xrj-439h-62hg

Improper Authentication in Apache Tomcat

9%
Низкий
около 4 лет назад
github логотип
GHSA-28cq-6rmx-pjq4

Improper Authentication in Apache Tomcat

12%
Средний
около 4 лет назад
github логотип
GHSA-h6c8-rg87-f3pc

Apache Tomcat HTTP BIO Connector Error Discloses Information From Different Requests to Remote Users

9%
Низкий
около 4 лет назад
github логотип
GHSA-cpr9-82wf-f629

java/org/apache/coyote/http11/InternalNioInputBuffer.java in the HTTP NIO connector in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.28 does not properly restrict the request-header size, which allows remote attackers to cause a denial of service (memory consumption) via a large amount of header data.

9%
Низкий
около 4 лет назад
github логотип
GHSA-jgm2-m5cg-f66g

Authentication Bypass in Apache Tomcat

12%
Средний
около 4 лет назад

Уязвимостей на страницу


Поделиться