Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2011-1582

Apache Tomcat 7.0.12 and 7.0.13 processes the first request to a servlet without following security constraints that have been configured through annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1088, CVE-2011-1183, and CVE-2011-1419.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.015
EPSS Ranking 80.5%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2011-1582
  • Apache » Tomcat » Version: 7.0.12
    cpe:2.3:a:apache:tomcat:7.0.12
  • Apache » Tomcat » Version: 7.0.13
    cpe:2.3:a:apache:tomcat:7.0.13


Contact Us

Shodan ® - All rights reserved