Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-7197

The AJP connector in Apache Tomcat 5.5.15 uses an incorrect length for chunks, which can cause a buffer over-read in the ajp_process_callback in mod_jk, which allows remote attackers to read portions of sensitive memory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.025
EPSS Ranking 84.7%
CVSS Severity
CVSS v2 Score 7.8
References
Products affected by CVE-2006-7197
  • Apache » Tomcat » Version: 5.5.15
    cpe:2.3:a:apache:tomcat:5.5.15


Contact Us

Shodan ® - All rights reserved