Skip to main content

Apache Tomcat Multiple Vulnerabilities

Last Update Date: 15 Aug 2017 09:35 Release Date: 15 Aug 2017 3090 Views

RISK: Medium Risk

TYPE: Servers - Web Servers

TYPE: Web Servers

Multiple Vulnerabilities were identified in Apache Tomcat, a remote user can exploit these vulnerabilities to perform spoofing attack and bypass security restriction on the targeted system.


Impact

  • Security Restriction Bypass
  • Spoofing

System / Technologies affected

  • Apache Tomcat 9.0.0.M1 - 9.0.0.M21
  • Apache Tomcat 8.5.0 - 8.5.15
  • Apache Tomcat 8.0.0.RC1- 8.0.44
  • Apache Tomcat 7.0.41 - 7.0.78

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

The vendor has issued a fix :

  • Upgrade to Apache Tomcat 9.0.0.M22 or later
  • Upgrade to Apache Tomcat 8.5.16 or later
  • Upgrade to Apache Tomcat 8.0.45 or later
  • Upgrade to Apache Tomcat 7.0.79 or later

Vulnerability Identifier


Source


Related Link