Логотип exploitDog
bind:CVE-2013-2067
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-2067

Количество 6

Количество 6

ubuntu логотип

CVE-2013-2067

около 12 лет назад

java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication requirements and sessions, which allows remote attackers to inject a request into a session by sending this request during completion of the login form, a variant of a session fixation attack.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2013-2067

около 12 лет назад

java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication requirements and sessions, which allows remote attackers to inject a request into a session by sending this request during completion of the login form, a variant of a session fixation attack.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2013-2067

около 12 лет назад

java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication requirements and sessions, which allows remote attackers to inject a request into a session by sending this request during completion of the login form, a variant of a session fixation attack.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2013-2067

около 12 лет назад

java/org/apache/catalina/authenticator/FormAuthenticator.java in the f ...

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-6m48-jxwx-76q7

около 3 лет назад

Improper Authentication in Apache Tomcat

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0964

около 12 лет назад

ELSA-2013-0964: tomcat6 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2013-2067

java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication requirements and sessions, which allows remote attackers to inject a request into a session by sending this request during completion of the login form, a variant of a session fixation attack.

CVSS2: 6.8
4%
Низкий
около 12 лет назад
redhat логотип
CVE-2013-2067

java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication requirements and sessions, which allows remote attackers to inject a request into a session by sending this request during completion of the login form, a variant of a session fixation attack.

CVSS2: 2.6
4%
Низкий
около 12 лет назад
nvd логотип
CVE-2013-2067

java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication requirements and sessions, which allows remote attackers to inject a request into a session by sending this request during completion of the login form, a variant of a session fixation attack.

CVSS2: 6.8
4%
Низкий
около 12 лет назад
debian логотип
CVE-2013-2067

java/org/apache/catalina/authenticator/FormAuthenticator.java in the f ...

CVSS2: 6.8
4%
Низкий
около 12 лет назад
github логотип
GHSA-6m48-jxwx-76q7

Improper Authentication in Apache Tomcat

4%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2013-0964

ELSA-2013-0964: tomcat6 security update (MODERATE)

около 12 лет назад

Уязвимостей на страницу