Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
apache tomcat 3.2.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2003-0042
Jakarta Tomcat before 3.3.1a, when used with JDK 1.3.1 or earlier, allows remote attackers to list directories even with an index.html or other file present, or obtain unprocessed source code for a JSP file, via a URL containing a null character....
Apache Tomcat 3.1.1
Apache Tomcat 3.2
Apache Tomcat 3.0
Apache Tomcat 3.1
Apache Tomcat 3.3.1
Apache Tomcat 3.2.1
Apache Tomcat 3.2.3
Apache Tomcat 3.2.4
Apache Tomcat 3.3
1 EDB exploit available
NA
CVE-2003-0043
Jakarta Tomcat before 3.3.1a, when used with JDK 1.3.1 or earlier, uses trusted privileges when processing the web.xml file, which could allow remote attackers to read portions of some files through the web.xml file....
Apache Tomcat 3.0
Apache Tomcat 3.1
Apache Tomcat 3.3.1
Apache Tomcat 3.2.4
Apache Tomcat 3.3
Apache Tomcat 3.1.1
Apache Tomcat 3.2
Apache Tomcat 3.2.1
Apache Tomcat 3.2.3
NA
CVE-2005-0808
Apache Tomcat before 5.x allows remote attackers to cause a denial of service (application crash) via a crafted AJP12 packet to TCP port 8007....
Apache Tomcat 3.2.1
Apache Tomcat 3.2.2
Apache Tomcat 3.1.1
Apache Tomcat 3.2
Apache Tomcat 3.3.1a
Apache Tomcat 3.2.3
Apache Tomcat 3.2.4
Apache Tomcat 3.0
Apache Tomcat 3.1
Apache Tomcat 3.3
Apache Tomcat 3.3.1
NA
CVE-2003-0044
Multiple cross-site scripting (XSS) vulnerabilities in the (1) examples and (2) ROOT web applications for Jakarta Tomcat 3.x through 3.3.1a allow remote attackers to insert arbitrary web script or HTML....
Apache Tomcat 3.3
Apache Tomcat 3.3.1
Apache Tomcat 3.2.3
Apache Tomcat 3.2.4
Apache Tomcat 3.0
Apache Tomcat 3.1
Apache Tomcat 3.1.1
Apache Tomcat 3.3.1a
Apache Tomcat 3.2
Apache Tomcat 3.2.1
NA
CVE-2002-2006
The default installation of Apache Tomcat 4.0 through 4.1 and 3.0 through 3.3.1 allows remote attackers to obtain the installation path and other sensitive system information via the (1) SnoopServlet or (2) TroubleShooter example servlets....
Apache Tomcat 3.0
Apache Tomcat 3.3
Apache Tomcat 3.3.1
Apache Tomcat 3.2
Apache Tomcat 3.2.1
Apache Tomcat 4.0.2
Apache Tomcat 4.0.3
Apache Tomcat 3.1
Apache Tomcat 3.1.1
Apache Tomcat 4.0.0
Apache Tomcat 4.0.1
Apache Tomcat 3.2.3
Apache Tomcat 3.2.4
Apache Tomcat 4.1.0
1 EDB exploit available
NA
CVE-2003-0045
Jakarta Tomcat before 3.3.1a on certain Windows systems may allow remote attackers to cause a denial of service (thread hang and resource consumption) via a request for a JSP page containing an MS-DOS device name, such as aux.jsp....
Apache Tomcat 3.2.1
Apache Tomcat 3.2.3
Apache Tomcat 3.1.1
Apache Tomcat 3.2
Apache Tomcat 3.2.4
Apache Tomcat 3.3
Apache Tomcat 3.0
Apache Tomcat 3.1
Apache Tomcat 3.3.1
NA
CVE-2001-0829
A cross-site scripting vulnerability in Apache Tomcat 3.2.1 allows a malicious webmaster to embed Javascript in a request for a .JSP file, which causes the Javascript to be inserted into an error message....
Apache Tomcat 3.2.1
NA
CVE-2002-1148
The default servlet (org.apache.catalina.servlets.DefaultServlet) in Tomcat 4.0.4 and 4.1.10 and earlier allows remote attackers to read source code for server files via a direct request to the servlet....
Apache Tomcat 3.0
Apache Tomcat 3.1
Apache Tomcat 3.3.1
Apache Tomcat 4.0.0
Apache Tomcat 4.1.3
Apache Tomcat 4.1.9
Apache Tomcat 3.2.1
Apache Tomcat 3.2.2
Apache Tomcat 3.2.3
Apache Tomcat 4.0.3
Apache Tomcat 4.0.4
Apache Tomcat 3.2.4
Apache Tomcat 3.3
Apache Tomcat 4.1.0
Apache Tomcat 4.1.10
Apache Tomcat 3.1.1
Apache Tomcat 3.2
Apache Tomcat 4.0.1
Apache Tomcat 4.0.2
1 EDB exploit available
NA
CVE-2001-1563
Unknown vulnerability in Tomcat 3.2.1 running on HP Secure OS for Linux 1.0 allows attackers to access servlet resources. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this issue is already covered by other CVE identifiers....
Apache Tomcat 3.2.1
Hp Secure Os 1.0
NA
CVE-2013-6357
** DISPUTED ** Cross-site request forgery (CSRF) vulnerability in the Manager application in Apache Tomcat 5.5.25 and earlier allows remote attackers to hijack the authentication of administrators for requests that manipulate application deployment via the POST method, as...
Apache Tomcat
Apache Tomcat 5.5.23
Apache Tomcat 5.5.19
Apache Tomcat 5.5.17
Apache Tomcat 5.5.10
Apache Tomcat 5.5.0
Apache Tomcat 5.0.30
Apache Tomcat 5.0.29
Apache Tomcat 5.0.24
Apache Tomcat 5.0.22
Apache Tomcat 5.0.15
Apache Tomcat 5.0.13
Apache Tomcat 4.1.9
Apache Tomcat 4.1.31
Apache Tomcat 4.1.24
Apache Tomcat 4.1.15
Apache Tomcat 4.0.4
Apache Tomcat 4.0.2
Apache Tomcat 3.3
Apache Tomcat 3.2.3
Apache Tomcat 3.1.1
Apache Tomcat 3.0
Apache Tomcat 5.5.3
Apache Tomcat 5.5.8
Apache Tomcat 5.5.22
Apache Tomcat 5.5.21
Apache Tomcat 5.5.20
Apache Tomcat 5.5.2
Apache Tomcat 5.0.8
Apache Tomcat 5.0.7
Apache Tomcat 5.0.6
Apache Tomcat 5.0.5
Apache Tomcat 5.0.2
Apache Tomcat 5.0.19
Apache Tomcat 5.0.18
Apache Tomcat 5.0.17
Apache Tomcat 5.0.16
Apache Tomcat 4.1.3
Apache Tomcat 4.1.29
Apache Tomcat 4.1.28
Apache Tomcat 4.0.0
Apache Tomcat 4
Apache Tomcat 3.3.2
Apache Tomcat 3.3.1a
Apache Tomcat 5.5.4
Apache Tomcat 5.5.5
Apache Tomcat 5.5.6
Apache Tomcat 5.5.7
Apache Tomcat 5.5.15
Apache Tomcat 5.5.14
Apache Tomcat 5.5.13
Apache Tomcat 5.5.12
Apache Tomcat 5.5.11
Apache Tomcat 5.0.28
Apache Tomcat 5.0.27
Apache Tomcat 5.0.26
Apache Tomcat 5.0.25
Apache Tomcat 5.0.11
Apache Tomcat 5.0.10
Apache Tomcat 5.0.1
Apache Tomcat 5.0.0
Apache Tomcat 4.1.10
Apache Tomcat 4.1.1
Apache Tomcat 4.1.0
Apache Tomcat 4.0.6
Apache Tomcat 4.0.5
Apache Tomcat 3.2.2
Apache Tomcat 3.2.1
Apache Tomcat 3.2
Apache Tomcat 5.5.24
Apache Tomcat 5.5.18
Apache Tomcat 5.5.16
Apache Tomcat 5.5.1
Apache Tomcat 5.0.9
Apache Tomcat 5.0.4
Apache Tomcat 5.0.3
Apache Tomcat 5.0.23
Apache Tomcat 5.0.21
Apache Tomcat 5.0.14
Apache Tomcat 5.0.12
Apache Tomcat 5
Apache Tomcat 4.1.36
Apache Tomcat 4.1.2
Apache Tomcat 4.1.12
Apache Tomcat 4.0.3
Apache Tomcat 4.0.1
Apache Tomcat 3.3.1
Apache Tomcat 3.2.4
Apache Tomcat 3.1
Apache Tomcat 1.1.3
Apache Tomcat 5.5.9
1 EDB exploit available
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-20963
CVE-2023-28626
remote attackers
file inclusion
CVE-2023-28447
CVE-2023-27394
CVE-2023-23529
CVE-2023-27231
XSS
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »