CVE-2013-4322Medium· 4.3▾ TwilightPoC availableApache Tomcat before 6.0.39, 7.x before 7.0.50, and 8.x before 8.0.0-RC10 processes chunked transfer coding without properly handling (1) a large total amount of chunked data or (2) whitespace characters in an HTTP header value within a …
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 23.7 · likelihood 1.9 · exploitation 12
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 1 source. Availability, not in-the-wild use.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
9.5%
1 GitHub repo (last check)
Apache Tomcat before 6.0.39, 7.x before 7.0.50, and 8.x before 8.0.0-RC10 processes chunked transfer coding without properly handling (1) a large total amount of chunked data or (2) whitespace characters in an HTTP header value within a trailer field, which allows remote attackers to cause a denial of service by streaming data. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3544.
tomcat = 7.0.0tomcat = 7.0.1tomcat = 7.0.2tomcat = 7.0.3tomcat = 7.0.4tomcat = 7.0.10tomcat = 7.0.11tomcat = 7.0.12tomcat = 7.0.13tomcat = 7.0.14tomcat = 7.0.15tomcat = 7.0.16tomcat = 7.0.17tomcat = 7.0.18tomcat = 7.0.19tomcat = 7.0.20tomcat = 7.0.21tomcat = 7.0.22tomcat = 7.0.23tomcat = 7.0.24tomcat = 7.0.25tomcat = 7.0.26tomcat = 7.0.27tomcat = 7.0.28tomcat = 7.0.29tomcat = 7.0.30tomcat = 7.0.31tomcat = 7.0.32tomcat = 7.0.33tomcat = 7.0.34tomcat = 7.0.35tomcat = 7.0.36tomcat = 7.0.37tomcat = 7.0.38tomcat = 7.0.39tomcat = 7.0.40tomcat = 7.0.41tomcat = 7.0.42tomcat = 7.0.43tomcat = 7.0.44tomcat = 7.0.45tomcat = 7.0.46tomcat = 7.0.50tomcat <= 6.0.37tomcat = 1.1.3tomcat = 3.0tomcat = 3.1tomcat = 3.1.1tomcat = 3.2tomcat = 3.2.1tomcat = 3.2.2tomcat = 3.2.3tomcat = 3.2.4tomcat = 3.3tomcat = 3.3.1tomcat = 3.3.1atomcat = 3.3.2tomcat = 4tomcat = 4.0.0tomcat = 4.0.1tomcat = 4.0.2tomcat = 4.0.3tomcat = 4.0.4tomcat = 4.0.5tomcat = 4.0.6tomcat = 4.1.0tomcat = 4.1.1tomcat = 4.1.2tomcat = 4.1.3tomcat = 4.1.9tomcat = 4.1.10tomcat = 4.1.12tomcat = 4.1.15tomcat = 4.1.24tomcat = 4.1.28tomcat = 4.1.29tomcat = 4.1.31tomcat = 4.1.36tomcat = 5tomcat = 5.0.0tomcat = 5.0.1tomcat = 5.0.2tomcat = 5.0.3tomcat = 5.0.4tomcat = 5.0.5tomcat = 5.0.6tomcat = 5.0.7tomcat = 5.0.8tomcat = 5.0.9tomcat = 5.0.10tomcat = 5.0.11tomcat = 5.0.12tomcat = 5.0.13tomcat = 5.0.14tomcat = 5.0.15tomcat = 5.0.16tomcat = 5.0.17tomcat = 5.0.18tomcat = 5.0.19tomcat = 5.0.21Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2013-4286Medium· 5.8Apache Tomcat before 6.0.39, 7.x before 7.0.47, and 8.x before 8.0.0-RC3, when an HTTP connector or AJP connector is used, does not properly handle certain inconsistent HTTP request headers, which allows remote attackers to trigger incor…
CVE-2012-3544Medium· 5.0Apache Tomcat 6.x before 6.0.37 and 7.x before 7.0.30 does not properly handle chunk extensions in chunked transfer coding, which allows remote attackers to cause a denial of service by streaming data.
CVE-2012-4431Medium· 4.3org/apache/catalina/filters/CsrfPreventionFilter.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.32 allows remote attackers to bypass the cross-site request forgery (CSRF) protection mechanism via a request that lacks a sessio…
CVE-2013-4590Medium· 4.3Apache Tomcat before 6.0.39, 7.x before 7.0.50, and 8.x before 8.0.0-RC10 allows attackers to obtain "Tomcat internals" information by leveraging the presence of an untrusted web application with a context.xml, web.xml, *.jspx, *.tagx, o…
CVE-2013-4444Medium· 6.8Unrestricted file upload vulnerability in Apache Tomcat 7.x before 7.0.40, in certain situations involving outdated java.io.File code and a custom JMX configuration, allows remote attackers to execute arbitrary code by uploading and acce…
CVE-2013-2067Medium· 6.8java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication requirements …