Apache Tomcat Multiple Vulnerabilities
Last Update Date:
15 Aug 2017 09:35
Release Date:
15 Aug 2017
4178
Views
RISK: Medium Risk
TYPE: Servers - Web Servers
Multiple Vulnerabilities were identified in Apache Tomcat, a remote user can exploit these vulnerabilities to perform spoofing attack and bypass security restriction on the targeted system.
Impact
- Security Restriction Bypass
- Spoofing
System / Technologies affected
- Apache Tomcat 9.0.0.M1 - 9.0.0.M21
- Apache Tomcat 8.5.0 - 8.5.15
- Apache Tomcat 8.0.0.RC1- 8.0.44
- Apache Tomcat 7.0.41 - 7.0.78
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
The vendor has issued a fix :
- Upgrade to Apache Tomcat 9.0.0.M22 or later
- Upgrade to Apache Tomcat 8.5.16 or later
- Upgrade to Apache Tomcat 8.0.45 or later
- Upgrade to Apache Tomcat 7.0.79 or later
Vulnerability Identifier
Source
Related Link
Share with