Jakarta Tomcat prior to 3.3.1a on certain Windows systems may allow remote malicious users to cause a denial of service (thread hang and resource consumption) via a request for a JSP page containing an MS-DOS device name, such as aux.jsp.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apache tomcat 3.2.1 |
||
apache tomcat 3.2.3 |
||
apache tomcat 3.1.1 |
||
apache tomcat 3.2 |
||
apache tomcat 3.2.4 |
||
apache tomcat 3.3 |
||
apache tomcat 3.0 |
||
apache tomcat 3.1 |
||
apache tomcat 3.3.1 |