Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
apache tomcat 4.0.3 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-1358
Cross-site scripting (XSS) vulnerability in certain applications using Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.34 allows remote attackers to inject arbitrary web script or HTML via crafted "Accept-Language headers that do not conform to RFC 2616"....
Apache Tomcat 4.0.5
Apache Tomcat 4.0.6
Apache Tomcat 4.0.2
Apache Tomcat 4.0.3
Apache Tomcat 4.0.4
Apache Tomcat 4.1.0
Apache Tomcat
Apache Tomcat 4.0.0
Apache Tomcat 4.0.1
NA
CVE-2002-2006
The default installation of Apache Tomcat 4.0 through 4.1 and 3.0 through 3.3.1 allows remote attackers to obtain the installation path and other sensitive system information via the (1) SnoopServlet or (2) TroubleShooter example servlets....
Apache Tomcat 3.0
Apache Tomcat 3.3
Apache Tomcat 3.3.1
Apache Tomcat 3.2
Apache Tomcat 3.2.1
Apache Tomcat 4.0.2
Apache Tomcat 4.0.3
Apache Tomcat 3.1
Apache Tomcat 3.1.1
Apache Tomcat 4.0.0
Apache Tomcat 4.0.1
Apache Tomcat 3.2.3
Apache Tomcat 3.2.4
Apache Tomcat 4.1.0
1 EDB exploit available
NA
CVE-2003-0866
The Catalina org.apache.catalina.connector.http package in Tomcat 4.0.x up to 4.0.3 allows remote attackers to cause a denial of service via several requests that do not follow the HTTP protocol, which causes Tomcat to reject later requests....
Apache Tomcat 4.0.5
Apache Tomcat 4.0.6
Apache Tomcat 4.0.0
Apache Tomcat 4.0.3
Apache Tomcat 4.0.4
Apache Tomcat 4.0.1
Apache Tomcat 4.0.2
1 EDB exploit available
NA
CVE-2007-3383
Cross-site scripting (XSS) vulnerability in SendMailServlet in the examples web application (examples/jsp/mail/sendmail.jsp) in Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.36 allows remote attackers to inject arbitrary web script or HTML via the From field and...
Apache Tomcat 4.0.3
Apache Tomcat 4.0.4
Apache Tomcat 4.1.2
Apache Tomcat 4.1.24
Apache Tomcat 4.0.5
Apache Tomcat 4.0.6
Apache Tomcat 4.1.28
Apache Tomcat 4.1.3
Apache Tomcat 4.1.31
Apache Tomcat 4.0.1
Apache Tomcat 4.0.2
Apache Tomcat 4.1.10
Apache Tomcat 4.1.15
Apache Tomcat 4.0.0
Apache Tomcat 4.1.0
Apache Tomcat 4.1.1
Apache Tomcat 4.1.36
NA
CVE-2002-1394
Apache Tomcat 4.0.5 and earlier, when using both the invoker servlet and the default servlet, allows remote attackers to read source code for server files or bypass certain protections, a variant of CAN-2002-1148....
Apache Tomcat 4.0.3
Apache Tomcat 4.0.4
Apache Tomcat 4.0.5
Apache Tomcat 4.1.0
Apache Tomcat 4.0.0
Apache Tomcat 4.1.10
Apache Tomcat 4.1.3
Apache Tomcat 4.0.1
Apache Tomcat 4.0.2
Apache Tomcat 4.1.9
NA
CVE-2005-4703
Apache Tomcat 4.0.3, when running on Windows, allows remote attackers to obtain sensitive information via a request for a file that contains an MS-DOS device name such as lpt9, which leaks the pathname in an error message, as demonstrated by lpt9.xtp using Nikto....
Apache Tomcat 4.0.3
1 EDB exploit available
NA
CVE-2002-0936
The Java Server Pages (JSP) engine in Tomcat allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null)....
Apache Tomcat 4.0.3
1 EDB exploit available
NA
CVE-2002-0935
Apache Tomcat 4.0.3, and possibly other versions before 4.1.3 beta, allows remote attackers to cause a denial of service (resource exhaustion) via a large number of requests to the server with null characters, which causes the working threads to hang....
Apache Tomcat 4.0.3
NA
CVE-2002-0682
Cross-site scripting vulnerability in Apache Tomcat 4.0.3 allows remote attackers to execute script as other web users via script in a URL with the /servlet/ mapping, which does not filter the script when an exception is thrown by the servlet....
Apache Tomcat 4.0.3
1 EDB exploit available
NA
CVE-2002-1148
The default servlet (org.apache.catalina.servlets.DefaultServlet) in Tomcat 4.0.4 and 4.1.10 and earlier allows remote attackers to read source code for server files via a direct request to the servlet....
Apache Tomcat 3.0
Apache Tomcat 3.1
Apache Tomcat 3.3.1
Apache Tomcat 4.0.0
Apache Tomcat 4.1.3
Apache Tomcat 4.1.9
Apache Tomcat 3.2.1
Apache Tomcat 3.2.2
Apache Tomcat 3.2.3
Apache Tomcat 4.0.3
Apache Tomcat 4.0.4
Apache Tomcat 3.2.4
Apache Tomcat 3.3
Apache Tomcat 4.1.0
Apache Tomcat 4.1.10
Apache Tomcat 3.1.1
Apache Tomcat 3.2
Apache Tomcat 4.0.1
Apache Tomcat 4.0.2
1 EDB exploit available
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-20963
CVE-2023-28626
remote attackers
file inclusion
CVE-2023-28447
CVE-2023-27394
CVE-2023-23529
CVE-2023-27231
XSS
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »