Логотип exploitDog
bind:CVE-2011-1184
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2011-1184

Количество 7

Количество 7

ubuntu логотип

CVE-2011-1184

почти 14 лет назад

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2011-1184

около 14 лет назад

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2011-1184

почти 14 лет назад

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2011-1184

почти 14 лет назад

The HTTP Digest Access Authentication implementation in Apache Tomcat ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-q9xf-jwr4-v445

больше 3 лет назад

Authentication Bypass in Apache Tomcat

EPSS: Низкий
oracle-oval логотип

ELSA-2011-1845

почти 14 лет назад

ELSA-2011-1845: tomcat5 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2011-1780

почти 14 лет назад

ELSA-2011-1780: tomcat6 security and bug fix update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2011-1184

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 5
5%
Низкий
почти 14 лет назад
redhat логотип
CVE-2011-1184

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 4.3
5%
Низкий
около 14 лет назад
nvd логотип
CVE-2011-1184

The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values.

CVSS2: 5
5%
Низкий
почти 14 лет назад
debian логотип
CVE-2011-1184

The HTTP Digest Access Authentication implementation in Apache Tomcat ...

CVSS2: 5
5%
Низкий
почти 14 лет назад
github логотип
GHSA-q9xf-jwr4-v445

Authentication Bypass in Apache Tomcat

5%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2011-1845

ELSA-2011-1845: tomcat5 security update (MODERATE)

почти 14 лет назад
oracle-oval логотип
ELSA-2011-1780

ELSA-2011-1780: tomcat6 security and bug fix update (MODERATE)

почти 14 лет назад

Уязвимостей на страницу