Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
apache tomcat 8.5.0 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2016-6817
The HTTP/2 header parser in Apache Tomcat 9.0.0.M1 to 9.0.0.M11 and 8.5.0 to 8.5.6 entered an infinite loop if a header was received that was larger than the available buffer. This made a denial of service attack possible....
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 8.5.5
Apache Tomcat 8.5.6
Apache Tomcat 9.0.0
2 Github repositories available
5
CVSSv2
CVE-2017-5650
In Apache Tomcat 9.0.0.M1 to 9.0.0.M18 and 8.5.0 to 8.5.12, the handling of an HTTP/2 GOAWAY frame for a connection did not close streams associated with that connection that were currently waiting for a WINDOW_UPDATE before allowing the application to write more data. These...
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 8.5.5
Apache Tomcat 8.5.6
Apache Tomcat 8.5.7
Apache Tomcat 8.5.8
Apache Tomcat 8.5.9
Apache Tomcat 8.5.10
Apache Tomcat 8.5.11
Apache Tomcat 8.5.12
Apache Tomcat 9.0.0
1 Github repository available
5
CVSSv2
CVE-2017-7675
The HTTP/2 implementation in Apache Tomcat 9.0.0.M1 to 9.0.0.M21 and 8.5.0 to 8.5.15 bypassed a number of security checks that prevented directory traversal attacks. It was therefore possible to bypass security constraints using a specially crafted URL....
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 8.5.5
Apache Tomcat 8.5.6
Apache Tomcat 8.5.7
Apache Tomcat 8.5.8
Apache Tomcat 8.5.9
Apache Tomcat 8.5.10
Apache Tomcat 8.5.11
Apache Tomcat 8.5.12
Apache Tomcat 8.5.13
Apache Tomcat 8.5.14
Apache Tomcat 8.5.15
Apache Tomcat 9.0.0
1 Github repository available
7.5
CVSSv2
CVE-2017-5651
In Apache Tomcat 9.0.0.M1 to 9.0.0.M18 and 8.5.0 to 8.5.12, the refactoring of the HTTP connectors introduced a regression in the send file processing. If the send file processing completed quickly, it was possible for the Processor to be added to the processor cache twice. This...
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 8.5.5
Apache Tomcat 8.5.6
Apache Tomcat 8.5.7
Apache Tomcat 8.5.8
Apache Tomcat 8.5.9
Apache Tomcat 8.5.10
Apache Tomcat 8.5.11
Apache Tomcat 8.5.12
Apache Tomcat 9.0.0
1 Github repository available
5
CVSSv2
CVE-2016-6797
The ResourceLinkFactory implementation in Apache Tomcat 9.0.0.M1 to 9.0.0.M9, 8.5.0 to 8.5.4, 8.0.0.RC1 to 8.0.36, 7.0.0 to 7.0.70 and 6.0.0 to 6.0.45 did not limit web application access to global JNDI resources to those resources explicitly linked to the web application....
Apache Tomcat 6.0.0
Apache Tomcat 6.0.1
Apache Tomcat 6.0.2
Apache Tomcat 6.0.3
Apache Tomcat 6.0.4
Apache Tomcat 6.0.5
Apache Tomcat 6.0.6
Apache Tomcat 6.0.7
Apache Tomcat 6.0.8
Apache Tomcat 6.0.9
Apache Tomcat 6.0.10
Apache Tomcat 6.0.11
Apache Tomcat 6.0.12
Apache Tomcat 6.0.13
Apache Tomcat 6.0.14
Apache Tomcat 6.0.15
Apache Tomcat 6.0.16
Apache Tomcat 6.0.17
Apache Tomcat 6.0.18
Apache Tomcat 6.0.19
Apache Tomcat 6.0.20
Apache Tomcat 6.0.21
Apache Tomcat 6.0.22
Apache Tomcat 6.0.23
Apache Tomcat 6.0.24
Apache Tomcat 6.0.25
Apache Tomcat 6.0.26
Apache Tomcat 6.0.27
Apache Tomcat 6.0.28
Apache Tomcat 6.0.29
Apache Tomcat 6.0.30
Apache Tomcat 6.0.31
Apache Tomcat 6.0.32
Apache Tomcat 6.0.33
Apache Tomcat 6.0.34
Apache Tomcat 6.0.35
Apache Tomcat 6.0.36
Apache Tomcat 6.0.37
Apache Tomcat 6.0.38
Apache Tomcat 6.0.39
Apache Tomcat 6.0.40
Apache Tomcat 6.0.41
Apache Tomcat 6.0.42
Apache Tomcat 6.0.43
Apache Tomcat 6.0.44
Apache Tomcat 6.0.45
Apache Tomcat 7.0.0
Apache Tomcat 7.0.1
Apache Tomcat 7.0.2
Apache Tomcat 7.0.3
Apache Tomcat 7.0.4
Apache Tomcat 7.0.5
Apache Tomcat 7.0.6
Apache Tomcat 7.0.7
Apache Tomcat 7.0.8
Apache Tomcat 7.0.9
Apache Tomcat 7.0.10
Apache Tomcat 7.0.11
Apache Tomcat 7.0.12
Apache Tomcat 7.0.13
Apache Tomcat 7.0.14
Apache Tomcat 7.0.15
Apache Tomcat 7.0.16
Apache Tomcat 7.0.17
Apache Tomcat 7.0.18
Apache Tomcat 7.0.19
Apache Tomcat 7.0.20
Apache Tomcat 7.0.21
Apache Tomcat 7.0.22
Apache Tomcat 7.0.23
Apache Tomcat 7.0.24
Apache Tomcat 7.0.25
Apache Tomcat 7.0.26
Apache Tomcat 7.0.27
Apache Tomcat 7.0.28
Apache Tomcat 7.0.29
Apache Tomcat 7.0.30
Apache Tomcat 7.0.31
Apache Tomcat 7.0.32
Apache Tomcat 7.0.33
Apache Tomcat 7.0.34
Apache Tomcat 7.0.35
Apache Tomcat 7.0.36
Apache Tomcat 7.0.37
Apache Tomcat 7.0.38
Apache Tomcat 7.0.39
Apache Tomcat 7.0.40
Apache Tomcat 7.0.41
Apache Tomcat 7.0.42
Apache Tomcat 7.0.43
Apache Tomcat 7.0.44
Apache Tomcat 7.0.45
Apache Tomcat 7.0.46
Apache Tomcat 7.0.47
Apache Tomcat 7.0.48
Apache Tomcat 7.0.49
Apache Tomcat 7.0.50
Apache Tomcat 7.0.52
Apache Tomcat 7.0.53
Apache Tomcat 7.0.54
Apache Tomcat 7.0.55
Apache Tomcat 7.0.56
Apache Tomcat 7.0.57
Apache Tomcat 7.0.58
Apache Tomcat 7.0.59
Apache Tomcat 7.0.60
Apache Tomcat 7.0.61
Apache Tomcat 7.0.62
Apache Tomcat 7.0.63
Apache Tomcat 7.0.64
Apache Tomcat 7.0.65
Apache Tomcat 7.0.66
Apache Tomcat 7.0.67
Apache Tomcat 7.0.68
Apache Tomcat 7.0.69
Apache Tomcat 7.0.70
Apache Tomcat 8.0
Apache Tomcat 8.0.0
Apache Tomcat 8.0.1
Apache Tomcat 8.0.2
Apache Tomcat 8.0.3
Apache Tomcat 8.0.4
Apache Tomcat 8.0.5
Apache Tomcat 8.0.6
Apache Tomcat 8.0.7
Apache Tomcat 8.0.8
Apache Tomcat 8.0.9
Apache Tomcat 8.0.10
Apache Tomcat 8.0.11
Apache Tomcat 8.0.12
Apache Tomcat 8.0.13
Apache Tomcat 8.0.14
Apache Tomcat 8.0.15
Apache Tomcat 8.0.16
Apache Tomcat 8.0.17
Apache Tomcat 8.0.18
Apache Tomcat 8.0.19
Apache Tomcat 8.0.20
Apache Tomcat 8.0.21
Apache Tomcat 8.0.22
Apache Tomcat 8.0.23
Apache Tomcat 8.0.24
Apache Tomcat 8.0.25
Apache Tomcat 8.0.26
Apache Tomcat 8.0.27
Apache Tomcat 8.0.28
Apache Tomcat 8.0.29
Apache Tomcat 8.0.30
Apache Tomcat 8.0.31
Apache Tomcat 8.0.32
Apache Tomcat 8.0.33
Apache Tomcat 8.0.34
Apache Tomcat 8.0.35
Apache Tomcat 8.0.36
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 9.0.0
5
CVSSv2
CVE-2016-6796
A malicious web application running on Apache Tomcat 9.0.0.M1 to 9.0.0.M9, 8.5.0 to 8.5.4, 8.0.0.RC1 to 8.0.36, 7.0.0 to 7.0.70 and 6.0.0 to 6.0.45 was able to bypass a configured SecurityManager via manipulation of the configuration parameters for the JSP Servlet....
Apache Tomcat 6.0.0
Apache Tomcat 6.0.1
Apache Tomcat 6.0.2
Apache Tomcat 6.0.3
Apache Tomcat 6.0.4
Apache Tomcat 6.0.5
Apache Tomcat 6.0.6
Apache Tomcat 6.0.7
Apache Tomcat 6.0.8
Apache Tomcat 6.0.9
Apache Tomcat 6.0.10
Apache Tomcat 6.0.11
Apache Tomcat 6.0.12
Apache Tomcat 6.0.13
Apache Tomcat 6.0.14
Apache Tomcat 6.0.15
Apache Tomcat 6.0.16
Apache Tomcat 6.0.17
Apache Tomcat 6.0.18
Apache Tomcat 6.0.19
Apache Tomcat 6.0.20
Apache Tomcat 6.0.21
Apache Tomcat 6.0.22
Apache Tomcat 6.0.23
Apache Tomcat 6.0.24
Apache Tomcat 6.0.25
Apache Tomcat 6.0.26
Apache Tomcat 6.0.27
Apache Tomcat 6.0.28
Apache Tomcat 6.0.29
Apache Tomcat 6.0.30
Apache Tomcat 6.0.31
Apache Tomcat 6.0.32
Apache Tomcat 6.0.33
Apache Tomcat 6.0.34
Apache Tomcat 6.0.35
Apache Tomcat 6.0.36
Apache Tomcat 6.0.37
Apache Tomcat 6.0.38
Apache Tomcat 6.0.39
Apache Tomcat 6.0.40
Apache Tomcat 6.0.41
Apache Tomcat 6.0.42
Apache Tomcat 6.0.43
Apache Tomcat 6.0.44
Apache Tomcat 6.0.45
Apache Tomcat 7.0.0
Apache Tomcat 7.0.1
Apache Tomcat 7.0.2
Apache Tomcat 7.0.3
Apache Tomcat 7.0.4
Apache Tomcat 7.0.5
Apache Tomcat 7.0.6
Apache Tomcat 7.0.7
Apache Tomcat 7.0.8
Apache Tomcat 7.0.9
Apache Tomcat 7.0.10
Apache Tomcat 7.0.11
Apache Tomcat 7.0.12
Apache Tomcat 7.0.13
Apache Tomcat 7.0.14
Apache Tomcat 7.0.15
Apache Tomcat 7.0.16
Apache Tomcat 7.0.17
Apache Tomcat 7.0.18
Apache Tomcat 7.0.19
Apache Tomcat 7.0.20
Apache Tomcat 7.0.21
Apache Tomcat 7.0.22
Apache Tomcat 7.0.23
Apache Tomcat 7.0.24
Apache Tomcat 7.0.25
Apache Tomcat 7.0.26
Apache Tomcat 7.0.27
Apache Tomcat 7.0.28
Apache Tomcat 7.0.29
Apache Tomcat 7.0.30
Apache Tomcat 7.0.31
Apache Tomcat 7.0.32
Apache Tomcat 7.0.33
Apache Tomcat 7.0.34
Apache Tomcat 7.0.35
Apache Tomcat 7.0.36
Apache Tomcat 7.0.37
Apache Tomcat 7.0.38
Apache Tomcat 7.0.39
Apache Tomcat 7.0.40
Apache Tomcat 7.0.41
Apache Tomcat 7.0.42
Apache Tomcat 7.0.43
Apache Tomcat 7.0.44
Apache Tomcat 7.0.45
Apache Tomcat 7.0.46
Apache Tomcat 7.0.47
Apache Tomcat 7.0.48
Apache Tomcat 7.0.49
Apache Tomcat 7.0.50
Apache Tomcat 7.0.52
Apache Tomcat 7.0.53
Apache Tomcat 7.0.54
Apache Tomcat 7.0.55
Apache Tomcat 7.0.56
Apache Tomcat 7.0.57
Apache Tomcat 7.0.58
Apache Tomcat 7.0.59
Apache Tomcat 7.0.60
Apache Tomcat 7.0.61
Apache Tomcat 7.0.62
Apache Tomcat 7.0.63
Apache Tomcat 7.0.64
Apache Tomcat 7.0.65
Apache Tomcat 7.0.66
Apache Tomcat 7.0.67
Apache Tomcat 7.0.68
Apache Tomcat 7.0.69
Apache Tomcat 7.0.70
Apache Tomcat 8.0
Apache Tomcat 8.0.0
Apache Tomcat 8.0.1
Apache Tomcat 8.0.2
Apache Tomcat 8.0.3
Apache Tomcat 8.0.4
Apache Tomcat 8.0.5
Apache Tomcat 8.0.6
Apache Tomcat 8.0.7
Apache Tomcat 8.0.8
Apache Tomcat 8.0.9
Apache Tomcat 8.0.10
Apache Tomcat 8.0.11
Apache Tomcat 8.0.12
Apache Tomcat 8.0.13
Apache Tomcat 8.0.14
Apache Tomcat 8.0.15
Apache Tomcat 8.0.16
Apache Tomcat 8.0.17
Apache Tomcat 8.0.18
Apache Tomcat 8.0.19
Apache Tomcat 8.0.20
Apache Tomcat 8.0.21
Apache Tomcat 8.0.22
Apache Tomcat 8.0.23
Apache Tomcat 8.0.24
Apache Tomcat 8.0.25
Apache Tomcat 8.0.26
Apache Tomcat 8.0.27
Apache Tomcat 8.0.28
Apache Tomcat 8.0.29
Apache Tomcat 8.0.30
Apache Tomcat 8.0.31
Apache Tomcat 8.0.32
Apache Tomcat 8.0.33
Apache Tomcat 8.0.34
Apache Tomcat 8.0.35
Apache Tomcat 8.0.36
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 9.0.0
4.3
CVSSv2
CVE-2017-7674
The CORS Filter in Apache Tomcat 9.0.0.M1 to 9.0.0.M21, 8.5.0 to 8.5.15, 8.0.0.RC1 to 8.0.44 and 7.0.41 to 7.0.78 did not add an HTTP Vary header indicating that the response varies depending on Origin. This permitted client and server side cache poisoning in some circumstances....
Apache Tomcat 7.0.41
Apache Tomcat 7.0.42
Apache Tomcat 7.0.43
Apache Tomcat 7.0.44
Apache Tomcat 7.0.45
Apache Tomcat 7.0.46
Apache Tomcat 7.0.47
Apache Tomcat 7.0.48
Apache Tomcat 7.0.49
Apache Tomcat 7.0.50
Apache Tomcat 7.0.52
Apache Tomcat 7.0.53
Apache Tomcat 7.0.54
Apache Tomcat 7.0.55
Apache Tomcat 7.0.56
Apache Tomcat 7.0.57
Apache Tomcat 7.0.58
Apache Tomcat 7.0.59
Apache Tomcat 7.0.60
Apache Tomcat 7.0.61
Apache Tomcat 7.0.62
Apache Tomcat 7.0.63
Apache Tomcat 7.0.64
Apache Tomcat 7.0.65
Apache Tomcat 7.0.66
Apache Tomcat 7.0.67
Apache Tomcat 7.0.68
Apache Tomcat 7.0.69
Apache Tomcat 7.0.70
Apache Tomcat 7.0.71
Apache Tomcat 7.0.72
Apache Tomcat 7.0.73
Apache Tomcat 7.0.74
Apache Tomcat 7.0.75
Apache Tomcat 7.0.76
Apache Tomcat 7.0.77
Apache Tomcat 7.0.78
Apache Tomcat 8.0
Apache Tomcat 8.0.0
Apache Tomcat 8.0.1
Apache Tomcat 8.0.2
Apache Tomcat 8.0.3
Apache Tomcat 8.0.4
Apache Tomcat 8.0.5
Apache Tomcat 8.0.6
Apache Tomcat 8.0.7
Apache Tomcat 8.0.8
Apache Tomcat 8.0.9
Apache Tomcat 8.0.10
Apache Tomcat 8.0.11
Apache Tomcat 8.0.12
Apache Tomcat 8.0.13
Apache Tomcat 8.0.14
Apache Tomcat 8.0.15
Apache Tomcat 8.0.16
Apache Tomcat 8.0.17
Apache Tomcat 8.0.18
Apache Tomcat 8.0.19
Apache Tomcat 8.0.20
Apache Tomcat 8.0.21
Apache Tomcat 8.0.22
Apache Tomcat 8.0.23
Apache Tomcat 8.0.24
Apache Tomcat 8.0.25
Apache Tomcat 8.0.26
Apache Tomcat 8.0.27
Apache Tomcat 8.0.28
Apache Tomcat 8.0.29
Apache Tomcat 8.0.30
Apache Tomcat 8.0.31
Apache Tomcat 8.0.32
Apache Tomcat 8.0.33
Apache Tomcat 8.0.34
Apache Tomcat 8.0.35
Apache Tomcat 8.0.36
Apache Tomcat 8.0.37
Apache Tomcat 8.0.38
Apache Tomcat 8.0.39
Apache Tomcat 8.0.40
Apache Tomcat 8.0.41
Apache Tomcat 8.0.42
Apache Tomcat 8.0.43
Apache Tomcat 8.0.44
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 8.5.5
Apache Tomcat 8.5.6
Apache Tomcat 8.5.7
Apache Tomcat 8.5.8
Apache Tomcat 8.5.9
Apache Tomcat 8.5.10
Apache Tomcat 8.5.11
Apache Tomcat 8.5.12
Apache Tomcat 8.5.13
Apache Tomcat 8.5.14
Apache Tomcat 8.5.15
Apache Tomcat 9.0.0
1 Github repository available
5
CVSSv2
CVE-2016-8745
A bug in the error handling of the send file code for the NIO HTTP connector in Apache Tomcat 9.0.0.M1 to 9.0.0.M13, 8.5.0 to 8.5.8, 8.0.0.RC1 to 8.0.39, 7.0.0 to 7.0.73 and 6.0.16 to 6.0.48 resulted in the current Processor object being added to the Processor cache multiple...
Apache Tomcat 7.0.0
Apache Tomcat 7.0.1
Apache Tomcat 7.0.2
Apache Tomcat 7.0.3
Apache Tomcat 7.0.4
Apache Tomcat 7.0.5
Apache Tomcat 7.0.6
Apache Tomcat 7.0.7
Apache Tomcat 7.0.8
Apache Tomcat 7.0.9
Apache Tomcat 7.0.11
Apache Tomcat 7.0.12
Apache Tomcat 7.0.13
Apache Tomcat 7.0.14
Apache Tomcat 7.0.15
Apache Tomcat 7.0.16
Apache Tomcat 7.0.17
Apache Tomcat 7.0.18
Apache Tomcat 7.0.19
Apache Tomcat 7.0.20
Apache Tomcat 7.0.21
Apache Tomcat 7.0.22
Apache Tomcat 7.0.23
Apache Tomcat 7.0.24
Apache Tomcat 7.0.25
Apache Tomcat 7.0.26
Apache Tomcat 7.0.27
Apache Tomcat 7.0.28
Apache Tomcat 7.0.29
Apache Tomcat 7.0.30
Apache Tomcat 7.0.31
Apache Tomcat 7.0.32
Apache Tomcat 7.0.33
Apache Tomcat 7.0.34
Apache Tomcat 7.0.35
Apache Tomcat 7.0.36
Apache Tomcat 7.0.37
Apache Tomcat 7.0.38
Apache Tomcat 7.0.39
Apache Tomcat 7.0.40
Apache Tomcat 7.0.41
Apache Tomcat 7.0.42
Apache Tomcat 7.0.43
Apache Tomcat 7.0.44
Apache Tomcat 7.0.45
Apache Tomcat 7.0.46
Apache Tomcat 7.0.47
Apache Tomcat 7.0.48
Apache Tomcat 7.0.49
Apache Tomcat 7.0.50
Apache Tomcat 7.0.52
Apache Tomcat 7.0.53
Apache Tomcat 7.0.54
Apache Tomcat 7.0.55
Apache Tomcat 7.0.56
Apache Tomcat 7.0.57
Apache Tomcat 7.0.58
Apache Tomcat 7.0.59
Apache Tomcat 7.0.60
Apache Tomcat 7.0.61
Apache Tomcat 7.0.62
Apache Tomcat 7.0.63
Apache Tomcat 7.0.64
Apache Tomcat 7.0.65
Apache Tomcat 7.0.66
Apache Tomcat 7.0.67
Apache Tomcat 7.0.68
Apache Tomcat 7.0.69
Apache Tomcat 7.0.70
Apache Tomcat 7.0.71
Apache Tomcat 7.0.72
Apache Tomcat 7.0.73
Apache Tomcat 8.0
Apache Tomcat 8.0.0
Apache Tomcat 8.0.1
Apache Tomcat 8.0.2
Apache Tomcat 8.0.3
Apache Tomcat 8.0.4
Apache Tomcat 8.0.5
Apache Tomcat 8.0.6
Apache Tomcat 8.0.7
Apache Tomcat 8.0.8
Apache Tomcat 8.0.9
Apache Tomcat 8.0.10
Apache Tomcat 8.0.11
Apache Tomcat 8.0.12
Apache Tomcat 8.0.13
Apache Tomcat 8.0.14
Apache Tomcat 8.0.15
Apache Tomcat 8.0.16
Apache Tomcat 8.0.17
Apache Tomcat 8.0.18
Apache Tomcat 8.0.19
Apache Tomcat 8.0.20
Apache Tomcat 8.0.21
Apache Tomcat 8.0.22
Apache Tomcat 8.0.23
Apache Tomcat 8.0.24
Apache Tomcat 8.0.25
Apache Tomcat 8.0.26
Apache Tomcat 8.0.27
Apache Tomcat 8.0.28
Apache Tomcat 8.0.29
Apache Tomcat 8.0.30
Apache Tomcat 8.0.31
Apache Tomcat 8.0.32
Apache Tomcat 8.0.33
Apache Tomcat 8.0.34
Apache Tomcat 8.0.35
Apache Tomcat 8.0.36
Apache Tomcat 8.0.37
Apache Tomcat 8.0.38
Apache Tomcat 8.0.39
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 8.5.5
Apache Tomcat 8.5.6
Apache Tomcat 8.5.7
Apache Tomcat 8.5.8
Apache Tomcat 9.0.0
1 Github repository available
1 Article available
5
CVSSv2
CVE-2016-5018
In Apache Tomcat 9.0.0.M1 to 9.0.0.M9, 8.5.0 to 8.5.4, 8.0.0.RC1 to 8.0.36, 7.0.0 to 7.0.70 and 6.0.0 to 6.0.45 a malicious web application was able to bypass a configured SecurityManager via a Tomcat utility method that was accessible to web applications....
Apache Tomcat 6.0.0
Apache Tomcat 6.0.1
Apache Tomcat 6.0.2
Apache Tomcat 6.0.3
Apache Tomcat 6.0.4
Apache Tomcat 6.0.5
Apache Tomcat 6.0.6
Apache Tomcat 6.0.7
Apache Tomcat 6.0.8
Apache Tomcat 6.0.9
Apache Tomcat 6.0.10
Apache Tomcat 6.0.11
Apache Tomcat 6.0.12
Apache Tomcat 6.0.13
Apache Tomcat 6.0.14
Apache Tomcat 6.0.15
Apache Tomcat 6.0.16
Apache Tomcat 6.0.17
Apache Tomcat 6.0.18
Apache Tomcat 6.0.19
Apache Tomcat 6.0.20
Apache Tomcat 6.0.21
Apache Tomcat 6.0.22
Apache Tomcat 6.0.23
Apache Tomcat 6.0.24
Apache Tomcat 6.0.25
Apache Tomcat 6.0.26
Apache Tomcat 6.0.27
Apache Tomcat 6.0.28
Apache Tomcat 6.0.29
Apache Tomcat 6.0.30
Apache Tomcat 6.0.31
Apache Tomcat 6.0.32
Apache Tomcat 6.0.33
Apache Tomcat 6.0.34
Apache Tomcat 6.0.35
Apache Tomcat 6.0.36
Apache Tomcat 6.0.37
Apache Tomcat 6.0.38
Apache Tomcat 6.0.39
Apache Tomcat 6.0.40
Apache Tomcat 6.0.41
Apache Tomcat 6.0.42
Apache Tomcat 6.0.43
Apache Tomcat 6.0.44
Apache Tomcat 6.0.45
Apache Tomcat 7.0.0
Apache Tomcat 7.0.1
Apache Tomcat 7.0.2
Apache Tomcat 7.0.3
Apache Tomcat 7.0.4
Apache Tomcat 7.0.5
Apache Tomcat 7.0.6
Apache Tomcat 7.0.7
Apache Tomcat 7.0.8
Apache Tomcat 7.0.9
Apache Tomcat 7.0.10
Apache Tomcat 7.0.11
Apache Tomcat 7.0.12
Apache Tomcat 7.0.13
Apache Tomcat 7.0.14
Apache Tomcat 7.0.15
Apache Tomcat 7.0.16
Apache Tomcat 7.0.17
Apache Tomcat 7.0.18
Apache Tomcat 7.0.19
Apache Tomcat 7.0.20
Apache Tomcat 7.0.21
Apache Tomcat 7.0.22
Apache Tomcat 7.0.23
Apache Tomcat 7.0.24
Apache Tomcat 7.0.25
Apache Tomcat 7.0.26
Apache Tomcat 7.0.27
Apache Tomcat 7.0.28
Apache Tomcat 7.0.29
Apache Tomcat 7.0.30
Apache Tomcat 7.0.31
Apache Tomcat 7.0.32
Apache Tomcat 7.0.33
Apache Tomcat 7.0.34
Apache Tomcat 7.0.35
Apache Tomcat 7.0.36
Apache Tomcat 7.0.37
Apache Tomcat 7.0.38
Apache Tomcat 7.0.39
Apache Tomcat 7.0.40
Apache Tomcat 7.0.41
Apache Tomcat 7.0.42
Apache Tomcat 7.0.43
Apache Tomcat 7.0.44
Apache Tomcat 7.0.45
Apache Tomcat 7.0.46
Apache Tomcat 7.0.47
Apache Tomcat 7.0.48
Apache Tomcat 7.0.49
Apache Tomcat 7.0.50
Apache Tomcat 7.0.52
Apache Tomcat 7.0.53
Apache Tomcat 7.0.54
Apache Tomcat 7.0.55
Apache Tomcat 7.0.56
Apache Tomcat 7.0.57
Apache Tomcat 7.0.58
Apache Tomcat 7.0.59
Apache Tomcat 7.0.60
Apache Tomcat 7.0.61
Apache Tomcat 7.0.62
Apache Tomcat 7.0.63
Apache Tomcat 7.0.64
Apache Tomcat 7.0.65
Apache Tomcat 7.0.66
Apache Tomcat 7.0.67
Apache Tomcat 7.0.68
Apache Tomcat 7.0.69
Apache Tomcat 7.0.70
Apache Tomcat 8.0
Apache Tomcat 8.0.0
Apache Tomcat 8.0.1
Apache Tomcat 8.0.2
Apache Tomcat 8.0.3
Apache Tomcat 8.0.4
Apache Tomcat 8.0.5
Apache Tomcat 8.0.6
Apache Tomcat 8.0.7
Apache Tomcat 8.0.8
Apache Tomcat 8.0.9
Apache Tomcat 8.0.10
Apache Tomcat 8.0.11
Apache Tomcat 8.0.12
Apache Tomcat 8.0.13
Apache Tomcat 8.0.14
Apache Tomcat 8.0.15
Apache Tomcat 8.0.16
Apache Tomcat 8.0.17
Apache Tomcat 8.0.18
Apache Tomcat 8.0.19
Apache Tomcat 8.0.20
Apache Tomcat 8.0.21
Apache Tomcat 8.0.22
Apache Tomcat 8.0.23
Apache Tomcat 8.0.24
Apache Tomcat 8.0.25
Apache Tomcat 8.0.26
Apache Tomcat 8.0.27
Apache Tomcat 8.0.28
Apache Tomcat 8.0.29
Apache Tomcat 8.0.30
Apache Tomcat 8.0.31
Apache Tomcat 8.0.32
Apache Tomcat 8.0.33
Apache Tomcat 8.0.34
Apache Tomcat 8.0.35
Apache Tomcat 8.0.36
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 9.0.0
4
CVSSv2
CVE-2020-13943
If an HTTP/2 client connecting to Apache Tomcat 10.0.0-M1 to 10.0.0-M7, 9.0.0.M1 to 9.0.37 or 8.5.0 to 8.5.57 exceeded the agreed maximum number of concurrent streams for a connection (in violation of the HTTP/2 protocol), it was possible that a subsequent request made on that...
Apache Tomcat 8.5.0
Apache Tomcat 8.5.1
Apache Tomcat 8.5.2
Apache Tomcat 8.5.3
Apache Tomcat 8.5.4
Apache Tomcat 8.5.5
Apache Tomcat 8.5.6
Apache Tomcat 8.5.7
Apache Tomcat 8.5.8
Apache Tomcat 8.5.9
Apache Tomcat 8.5.10
Apache Tomcat 8.5.11
Apache Tomcat 8.5.12
Apache Tomcat 8.5.13
Apache Tomcat 8.5.14
Apache Tomcat 8.5.15
Apache Tomcat 8.5.16
Apache Tomcat 8.5.17
Apache Tomcat 8.5.18
Apache Tomcat 8.5.19
Apache Tomcat 8.5.20
Apache Tomcat 8.5.21
Apache Tomcat 8.5.22
Apache Tomcat 8.5.23
Apache Tomcat 8.5.24
Apache Tomcat 8.5.25
Apache Tomcat 8.5.26
Apache Tomcat 8.5.27
Apache Tomcat 8.5.28
Apache Tomcat 8.5.29
Apache Tomcat 8.5.30
Apache Tomcat 8.5.31
Apache Tomcat 8.5.32
Apache Tomcat 8.5.33
Apache Tomcat 8.5.34
Apache Tomcat 8.5.35
Apache Tomcat 8.5.36
Apache Tomcat 8.5.37
Apache Tomcat 8.5.38
Apache Tomcat 8.5.39
Apache Tomcat 8.5.40
Apache Tomcat 8.5.41
Apache Tomcat 8.5.42
Apache Tomcat 8.5.43
Apache Tomcat 8.5.44
Apache Tomcat 8.5.45
Apache Tomcat 8.5.46
Apache Tomcat 8.5.47
Apache Tomcat 8.5.48
Apache Tomcat 8.5.49
Apache Tomcat 8.5.50
Apache Tomcat 8.5.51
Apache Tomcat 8.5.52
Apache Tomcat 8.5.53
Apache Tomcat 8.5.54
Apache Tomcat 8.5.55
Apache Tomcat 8.5.56
Apache Tomcat 8.5.57
Apache Tomcat 9.0.0
Apache Tomcat 9.0.1
Apache Tomcat 9.0.2
Apache Tomcat 9.0.3
Apache Tomcat 9.0.4
Apache Tomcat 9.0.5
Apache Tomcat 9.0.6
Apache Tomcat 9.0.7
Apache Tomcat 9.0.8
Apache Tomcat 9.0.9
Apache Tomcat 9.0.10
Apache Tomcat 9.0.11
Apache Tomcat 9.0.12
Apache Tomcat 9.0.13
Apache Tomcat 9.0.14
Apache Tomcat 9.0.15
Apache Tomcat 9.0.16
Apache Tomcat 9.0.17
Apache Tomcat 9.0.18
Apache Tomcat 9.0.19
Apache Tomcat 9.0.20
Apache Tomcat 9.0.21
Apache Tomcat 9.0.22
Apache Tomcat 9.0.23
Apache Tomcat 9.0.24
Apache Tomcat 9.0.25
Apache Tomcat 9.0.26
Apache Tomcat 9.0.27
Apache Tomcat 9.0.28
Apache Tomcat 9.0.29
Apache Tomcat 9.0.30
Apache Tomcat 9.0.31
Apache Tomcat 9.0.32
Apache Tomcat 9.0.33
Apache Tomcat 9.0.34
Apache Tomcat 9.0.35
Apache Tomcat 9.0.36
Apache Tomcat 9.0.37
Apache Tomcat 10.0.0
Debian Debian Linux 9.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
denial of service
CVE-2021-3378
CVE-2021-21321
CVE-2020-12530
CVE-2021-22182
CVE-2020-1350
elevation of privilege
CVE-2021-21979
physical
1
2
3
4
NEXT »