Логотип exploitDog
bind:"CVE-2012-5885"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2012-5885"

Количество 7

Количество 7

ubuntu логотип

CVE-2012-5885

больше 12 лет назад

The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2012-5885

больше 12 лет назад

The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2012-5885

больше 12 лет назад

The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2012-5885

больше 12 лет назад

The replay-countermeasure functionality in the HTTP Digest Access Auth ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-99rf-92v6-cwx4

около 3 лет назад

Improper Access Control in Apache Tomcat

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0640

больше 12 лет назад

ELSA-2013-0640: tomcat5 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0623

больше 12 лет назад

ELSA-2013-0623: tomcat6 security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-5885

The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.

CVSS2: 5
3%
Низкий
больше 12 лет назад
redhat логотип
CVE-2012-5885

The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.

CVSS2: 5
3%
Низкий
больше 12 лет назад
nvd логотип
CVE-2012-5885

The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.

CVSS2: 5
3%
Низкий
больше 12 лет назад
debian логотип
CVE-2012-5885

The replay-countermeasure functionality in the HTTP Digest Access Auth ...

CVSS2: 5
3%
Низкий
больше 12 лет назад
github логотип
GHSA-99rf-92v6-cwx4

Improper Access Control in Apache Tomcat

3%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2013-0640

ELSA-2013-0640: tomcat5 security update (IMPORTANT)

больше 12 лет назад
oracle-oval логотип
ELSA-2013-0623

ELSA-2013-0623: tomcat6 security update (IMPORTANT)

больше 12 лет назад

Уязвимостей на страницу