5
CVSSv2

CVE-2007-5333

Published: 12/02/2008 Updated: 25/03/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Apache Tomcat 6.0.0 up to and including 6.0.14, 5.5.0 up to and including 5.5.25, and 4.1.0 up to and including 4.1.36 does not properly handle (1) double quote (") characters or (2) %5C (encoded backslash) sequences in a cookie value, which might cause sensitive information such as session IDs to be leaked to remote attackers and enable session hijacking attacks. NOTE: this issue exists because of an incomplete fix for CVE-2007-3385.

Affected Products

Vendor Product Versions
ApacheTomcat4.1.3, 4.1.9, 4.1.10, 4.1.12, 4.1.24, 4.1.31, 4.1.36, 5.0.1, 5.0.2, 5.0.3, 5.0.4, 5.0.5, 5.0.6, 5.0.7, 5.0.8, 5.0.9, 5.0.10, 5.0.11, 5.0.12, 5.0.13, 5.0.14, 5.0.15, 5.0.16, 5.0.19, 5.0.28, 5.0.30, 5.5.1, 5.5.2, 5.5.3, 5.5.4, 5.5.5, 5.5.6, 5.5.7, 5.5.8, 5.5.9, 5.5.10, 5.5.11, 5.5.12, 5.5.13, 5.5.14, 5.5.15, 5.5.16, 5.5.17, 5.5.18, 5.5.19, 5.5.20, 5.5.21, 5.5.22, 5.5.23, 5.5.24, 5.5.25, 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, 6.0.7, 6.0.8, 6.0.9, 6.0.10, 6.0.11, 6.0.12, 6.0.13, 6.0.14, 6.0.15
Apache Software FoundationTomcat4.1, 4.1.32, 4.1.34, 4.1.37, 5.0, 5.1, 5.2, 5.3, 5.4, 5.5

Vendor Advisories

Synopsis Important: tomcat security update Type/Severity Security Advisory: Important Topic Updated tomcat packages that fix several security issues are now availablefor Red Hat Enterprise Linux 5This update has been rated as having important security impact by the RedHat Security Response Team D ...

Exploits

source: wwwsecurityfocuscom/bid/27706/info Apache Tomcat is prone to an information-disclosure vulnerability because it fails to adequately sanitize user-supplied data Attackers can exploit this issue to access potentially sensitive data that may aid in further attacks Versions prior to Apache Tomcat 6016 and 5526 are vulnerable ...

References

CWE-200http://jvn.jp/jp/JVN%2309470767/index.htmlhttp://lists.apple.com/archives/security-announce/2008//Jun/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2008/Oct/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.htmlhttp://marc.info/?l=bugtraq&m=139344343412337&w=2http://secunia.com/advisories/28878http://secunia.com/advisories/28884http://secunia.com/advisories/28915http://secunia.com/advisories/29711http://secunia.com/advisories/30676http://secunia.com/advisories/30802http://secunia.com/advisories/32036http://secunia.com/advisories/32222http://secunia.com/advisories/33330http://secunia.com/advisories/37460http://secunia.com/advisories/44183http://secunia.com/advisories/57126http://security.gentoo.org/glsa/glsa-200804-10.xmlhttp://securityreason.com/securityalert/3636http://support.apple.com/kb/HT2163http://support.apple.com/kb/HT3216http://tomcat.apache.org/security-4.htmlhttp://tomcat.apache.org/security-5.htmlhttp://tomcat.apache.org/security-6.htmlhttp://www-01.ibm.com/support/docview.wss?uid=swg24018932http://www-01.ibm.com/support/docview.wss?uid=swg27012047http://www-01.ibm.com/support/docview.wss?uid=swg27012048http://www-1.ibm.com/support/docview.wss?uid=swg1IZ20133http://www-1.ibm.com/support/docview.wss?uid=swg1IZ20991http://www.mandriva.com/security/advisories?name=MDVSA-2009:018http://www.mandriva.com/security/advisories?name=MDVSA-2010:176http://www.redhat.com/docs/en-US/JBoss_Enterprise_Application_Platform/4.2.0.cp08/html-single/Release_Notes/index.htmlhttp://www.securityfocus.com/archive/1/487822/100/0/threadedhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/bid/27706http://www.securityfocus.com/bid/31681http://www.vmware.com/security/advisories/VMSA-2008-0010.htmlhttp://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://www.vupen.com/english/advisories/2008/0488http://www.vupen.com/english/advisories/2008/1856/referenceshttp://www.vupen.com/english/advisories/2008/1981/referenceshttp://www.vupen.com/english/advisories/2008/2690http://www.vupen.com/english/advisories/2008/2780http://www.vupen.com/english/advisories/2009/3316https://bugzilla.redhat.com/show_bug.cgi?id=532111https://lists.apache.org/thread.html/06cfb634bc7bf37af7d8f760f118018746ad8efbd519c4b789ac9c2e@%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5@%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/8dcaf7c3894d66cb717646ea1504ea6e300021c85bb4e677dc16b1aa@%3Cdev.tomcat.apache.org%3Ehttps://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74@%3Cdev.tomcat.apache.org%3Ehttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11177https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00315.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-February/msg00460.htmlhttps://access.redhat.com/errata/RHSA-2009:1164http://tools.cisco.com/security/center/viewAlert.x?alertId=15146https://nvd.nist.govhttps://www.exploit-db.com/exploits/31130/https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2008-1678