Логотип exploitDog
bind:"CVE-2011-1184"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2011-1184"

Количество 7

Количество 7

ubuntu логотип

CVE-2011-1184

больше 13 лет назад

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2011-1184

больше 13 лет назад

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2011-1184

больше 13 лет назад

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2011-1184

больше 13 лет назад

The HTTP Digest Access Authentication implementation in Apache Tomcat ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-q9xf-jwr4-v445

около 3 лет назад

Authentication Bypass in Apache Tomcat

EPSS: Низкий
oracle-oval логотип

ELSA-2011-1845

больше 13 лет назад

ELSA-2011-1845: tomcat5 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2011-1780

больше 13 лет назад

ELSA-2011-1780: tomcat6 security and bug fix update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2011-1184

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 5
5%
Низкий
больше 13 лет назад
redhat логотип
CVE-2011-1184

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 4.3
5%
Низкий
больше 13 лет назад
nvd логотип
CVE-2011-1184

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 5
5%
Низкий
больше 13 лет назад
debian логотип
CVE-2011-1184

The HTTP Digest Access Authentication implementation in Apache Tomcat ...

CVSS2: 5
5%
Низкий
больше 13 лет назад
github логотип
GHSA-q9xf-jwr4-v445

Authentication Bypass in Apache Tomcat

5%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2011-1845

ELSA-2011-1845: tomcat5 security update (MODERATE)

больше 13 лет назад
oracle-oval логотип
ELSA-2011-1780

ELSA-2011-1780: tomcat6 security and bug fix update (MODERATE)

больше 13 лет назад

Уязвимостей на страницу