Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-1745

A file inclusion vulnerability was found in the AJP connector enabled with a default AJP configuration port of 8009 in Undertow version 2.0.29.Final and before and was fixed in 2.0.30.Final. A remote, unauthenticated attacker could exploit this vulnerability to read web application files from a vulnerable server. In instances where the vulnerable server allows file uploads, an attacker could upload malicious JavaServer Pages (JSP) code within a variety of file types and trigger this vulnerability to gain remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.02
EPSS Ranking 82.8%
CVSS Severity
CVSS v3 Score 8.6
CVSS v2 Score 7.5
Products affected by CVE-2020-1745
  • Redhat » Undertow » Version: N/A
    cpe:2.3:a:redhat:undertow:-
  • Redhat » Undertow » Version: 1.0.0
    cpe:2.3:a:redhat:undertow:1.0.0
  • Redhat » Undertow » Version: 1.0.1
    cpe:2.3:a:redhat:undertow:1.0.1
  • Redhat » Undertow » Version: 1.0.10
    cpe:2.3:a:redhat:undertow:1.0.10
  • Redhat » Undertow » Version: 1.0.11
    cpe:2.3:a:redhat:undertow:1.0.11
  • Redhat » Undertow » Version: 1.0.12
    cpe:2.3:a:redhat:undertow:1.0.12
  • Redhat » Undertow » Version: 1.0.13
    cpe:2.3:a:redhat:undertow:1.0.13
  • Redhat » Undertow » Version: 1.0.14
    cpe:2.3:a:redhat:undertow:1.0.14
  • Redhat » Undertow » Version: 1.0.15
    cpe:2.3:a:redhat:undertow:1.0.15
  • Redhat » Undertow » Version: 1.0.16
    cpe:2.3:a:redhat:undertow:1.0.16
  • Redhat » Undertow » Version: 1.0.17
    cpe:2.3:a:redhat:undertow:1.0.17
  • Redhat » Undertow » Version: 1.0.18
    cpe:2.3:a:redhat:undertow:1.0.18
  • Redhat » Undertow » Version: 1.0.19
    cpe:2.3:a:redhat:undertow:1.0.19
  • Redhat » Undertow » Version: 1.0.2
    cpe:2.3:a:redhat:undertow:1.0.2
  • Redhat » Undertow » Version: 1.0.3
    cpe:2.3:a:redhat:undertow:1.0.3
  • Redhat » Undertow » Version: 1.0.4
    cpe:2.3:a:redhat:undertow:1.0.4
  • Redhat » Undertow » Version: 1.0.5
    cpe:2.3:a:redhat:undertow:1.0.5
  • Redhat » Undertow » Version: 1.0.6
    cpe:2.3:a:redhat:undertow:1.0.6
  • Redhat » Undertow » Version: 1.0.7
    cpe:2.3:a:redhat:undertow:1.0.7
  • Redhat » Undertow » Version: 1.0.8
    cpe:2.3:a:redhat:undertow:1.0.8
  • Redhat » Undertow » Version: 1.0.9
    cpe:2.3:a:redhat:undertow:1.0.9
  • Redhat » Undertow » Version: 1.1.0
    cpe:2.3:a:redhat:undertow:1.1.0
  • Redhat » Undertow » Version: 1.1.1
    cpe:2.3:a:redhat:undertow:1.1.1
  • Redhat » Undertow » Version: 1.1.2
    cpe:2.3:a:redhat:undertow:1.1.2
  • Redhat » Undertow » Version: 1.1.3
    cpe:2.3:a:redhat:undertow:1.1.3
  • Redhat » Undertow » Version: 1.1.4
    cpe:2.3:a:redhat:undertow:1.1.4
  • Redhat » Undertow » Version: 1.1.5
    cpe:2.3:a:redhat:undertow:1.1.5
  • Redhat » Undertow » Version: 1.1.6
    cpe:2.3:a:redhat:undertow:1.1.6
  • Redhat » Undertow » Version: 1.1.7
    cpe:2.3:a:redhat:undertow:1.1.7
  • Redhat » Undertow » Version: 1.1.8
    cpe:2.3:a:redhat:undertow:1.1.8
  • Redhat » Undertow » Version: 1.1.9
    cpe:2.3:a:redhat:undertow:1.1.9
  • Redhat » Undertow » Version: 1.2.0
    cpe:2.3:a:redhat:undertow:1.2.0
  • Redhat » Undertow » Version: 1.2.1
    cpe:2.3:a:redhat:undertow:1.2.1
  • Redhat » Undertow » Version: 1.2.10
    cpe:2.3:a:redhat:undertow:1.2.10
  • Redhat » Undertow » Version: 1.2.11
    cpe:2.3:a:redhat:undertow:1.2.11
  • Redhat » Undertow » Version: 1.2.12
    cpe:2.3:a:redhat:undertow:1.2.12
  • Redhat » Undertow » Version: 1.2.2
    cpe:2.3:a:redhat:undertow:1.2.2
  • Redhat » Undertow » Version: 1.2.3
    cpe:2.3:a:redhat:undertow:1.2.3
  • Redhat » Undertow » Version: 1.2.4
    cpe:2.3:a:redhat:undertow:1.2.4
  • Redhat » Undertow » Version: 1.2.5
    cpe:2.3:a:redhat:undertow:1.2.5
  • Redhat » Undertow » Version: 1.2.6
    cpe:2.3:a:redhat:undertow:1.2.6
  • Redhat » Undertow » Version: 1.2.7
    cpe:2.3:a:redhat:undertow:1.2.7
  • Redhat » Undertow » Version: 1.2.8
    cpe:2.3:a:redhat:undertow:1.2.8
  • Redhat » Undertow » Version: 1.2.9
    cpe:2.3:a:redhat:undertow:1.2.9
  • Redhat » Undertow » Version: 1.3.0
    cpe:2.3:a:redhat:undertow:1.3.0
  • Redhat » Undertow » Version: 1.3.1
    cpe:2.3:a:redhat:undertow:1.3.1
  • Redhat » Undertow » Version: 1.3.10
    cpe:2.3:a:redhat:undertow:1.3.10
  • Redhat » Undertow » Version: 1.3.11
    cpe:2.3:a:redhat:undertow:1.3.11
  • Redhat » Undertow » Version: 1.3.12
    cpe:2.3:a:redhat:undertow:1.3.12
  • Redhat » Undertow » Version: 1.3.13
    cpe:2.3:a:redhat:undertow:1.3.13
  • Redhat » Undertow » Version: 1.3.14
    cpe:2.3:a:redhat:undertow:1.3.14
  • Redhat » Undertow » Version: 1.3.15
    cpe:2.3:a:redhat:undertow:1.3.15
  • Redhat » Undertow » Version: 1.3.16
    cpe:2.3:a:redhat:undertow:1.3.16
  • Redhat » Undertow » Version: 1.3.17
    cpe:2.3:a:redhat:undertow:1.3.17
  • Redhat » Undertow » Version: 1.3.18
    cpe:2.3:a:redhat:undertow:1.3.18
  • Redhat » Undertow » Version: 1.3.19
    cpe:2.3:a:redhat:undertow:1.3.19
  • Redhat » Undertow » Version: 1.3.2
    cpe:2.3:a:redhat:undertow:1.3.2
  • Redhat » Undertow » Version: 1.3.20
    cpe:2.3:a:redhat:undertow:1.3.20
  • Redhat » Undertow » Version: 1.3.21
    cpe:2.3:a:redhat:undertow:1.3.21
  • Redhat » Undertow » Version: 1.3.22
    cpe:2.3:a:redhat:undertow:1.3.22
  • Redhat » Undertow » Version: 1.3.23
    cpe:2.3:a:redhat:undertow:1.3.23
  • Redhat » Undertow » Version: 1.3.24
    cpe:2.3:a:redhat:undertow:1.3.24
  • Redhat » Undertow » Version: 1.3.25
    cpe:2.3:a:redhat:undertow:1.3.25
  • Redhat » Undertow » Version: 1.3.26
    cpe:2.3:a:redhat:undertow:1.3.26
  • Redhat » Undertow » Version: 1.3.27
    cpe:2.3:a:redhat:undertow:1.3.27
  • Redhat » Undertow » Version: 1.3.28
    cpe:2.3:a:redhat:undertow:1.3.28
  • Redhat » Undertow » Version: 1.3.29
    cpe:2.3:a:redhat:undertow:1.3.29
  • Redhat » Undertow » Version: 1.3.3
    cpe:2.3:a:redhat:undertow:1.3.3
  • Redhat » Undertow » Version: 1.3.30
    cpe:2.3:a:redhat:undertow:1.3.30
  • Redhat » Undertow » Version: 1.3.31
    cpe:2.3:a:redhat:undertow:1.3.31
  • Redhat » Undertow » Version: 1.3.32
    cpe:2.3:a:redhat:undertow:1.3.32
  • Redhat » Undertow » Version: 1.3.33
    cpe:2.3:a:redhat:undertow:1.3.33
  • Redhat » Undertow » Version: 1.3.4
    cpe:2.3:a:redhat:undertow:1.3.4
  • Redhat » Undertow » Version: 1.3.5
    cpe:2.3:a:redhat:undertow:1.3.5
  • Redhat » Undertow » Version: 1.3.6
    cpe:2.3:a:redhat:undertow:1.3.6
  • Redhat » Undertow » Version: 1.3.7
    cpe:2.3:a:redhat:undertow:1.3.7
  • Redhat » Undertow » Version: 1.3.8
    cpe:2.3:a:redhat:undertow:1.3.8
  • Redhat » Undertow » Version: 1.3.9
    cpe:2.3:a:redhat:undertow:1.3.9
  • Redhat » Undertow » Version: 1.4.0
    cpe:2.3:a:redhat:undertow:1.4.0
  • Redhat » Undertow » Version: 1.4.1
    cpe:2.3:a:redhat:undertow:1.4.1
  • Redhat » Undertow » Version: 1.4.10
    cpe:2.3:a:redhat:undertow:1.4.10
  • Redhat » Undertow » Version: 1.4.11
    cpe:2.3:a:redhat:undertow:1.4.11
  • Redhat » Undertow » Version: 1.4.12
    cpe:2.3:a:redhat:undertow:1.4.12
  • Redhat » Undertow » Version: 1.4.13
    cpe:2.3:a:redhat:undertow:1.4.13
  • Redhat » Undertow » Version: 1.4.14
    cpe:2.3:a:redhat:undertow:1.4.14
  • Redhat » Undertow » Version: 1.4.15
    cpe:2.3:a:redhat:undertow:1.4.15
  • Redhat » Undertow » Version: 1.4.16
    cpe:2.3:a:redhat:undertow:1.4.16
  • Redhat » Undertow » Version: 1.4.17
    cpe:2.3:a:redhat:undertow:1.4.17
  • Redhat » Undertow » Version: 1.4.18
    cpe:2.3:a:redhat:undertow:1.4.18
  • Redhat » Undertow » Version: 1.4.19
    cpe:2.3:a:redhat:undertow:1.4.19
  • Redhat » Undertow » Version: 1.4.2
    cpe:2.3:a:redhat:undertow:1.4.2
  • Redhat » Undertow » Version: 1.4.20
    cpe:2.3:a:redhat:undertow:1.4.20
  • Redhat » Undertow » Version: 1.4.21
    cpe:2.3:a:redhat:undertow:1.4.21
  • Redhat » Undertow » Version: 1.4.22
    cpe:2.3:a:redhat:undertow:1.4.22
  • Redhat » Undertow » Version: 1.4.23
    cpe:2.3:a:redhat:undertow:1.4.23
  • Redhat » Undertow » Version: 1.4.24
    cpe:2.3:a:redhat:undertow:1.4.24
  • Redhat » Undertow » Version: 1.4.25
    cpe:2.3:a:redhat:undertow:1.4.25
  • Redhat » Undertow » Version: 1.4.26
    cpe:2.3:a:redhat:undertow:1.4.26
  • Redhat » Undertow » Version: 1.4.27
    cpe:2.3:a:redhat:undertow:1.4.27
  • Redhat » Undertow » Version: 1.4.28
    cpe:2.3:a:redhat:undertow:1.4.28
  • Redhat » Undertow » Version: 1.4.3
    cpe:2.3:a:redhat:undertow:1.4.3
  • Redhat » Undertow » Version: 1.4.4
    cpe:2.3:a:redhat:undertow:1.4.4
  • Redhat » Undertow » Version: 1.4.5
    cpe:2.3:a:redhat:undertow:1.4.5
  • Redhat » Undertow » Version: 1.4.6
    cpe:2.3:a:redhat:undertow:1.4.6
  • Redhat » Undertow » Version: 1.4.7
    cpe:2.3:a:redhat:undertow:1.4.7
  • Redhat » Undertow » Version: 1.4.8
    cpe:2.3:a:redhat:undertow:1.4.8
  • Redhat » Undertow » Version: 2.0.0
    cpe:2.3:a:redhat:undertow:2.0.0
  • Redhat » Undertow » Version: 2.0.1
    cpe:2.3:a:redhat:undertow:2.0.1
  • Redhat » Undertow » Version: 2.0.10
    cpe:2.3:a:redhat:undertow:2.0.10
  • Redhat » Undertow » Version: 2.0.11
    cpe:2.3:a:redhat:undertow:2.0.11
  • Redhat » Undertow » Version: 2.0.12
    cpe:2.3:a:redhat:undertow:2.0.12
  • Redhat » Undertow » Version: 2.0.13
    cpe:2.3:a:redhat:undertow:2.0.13
  • Redhat » Undertow » Version: 2.0.14
    cpe:2.3:a:redhat:undertow:2.0.14
  • Redhat » Undertow » Version: 2.0.15
    cpe:2.3:a:redhat:undertow:2.0.15
  • Redhat » Undertow » Version: 2.0.16
    cpe:2.3:a:redhat:undertow:2.0.16
  • Redhat » Undertow » Version: 2.0.17
    cpe:2.3:a:redhat:undertow:2.0.17
  • Redhat » Undertow » Version: 2.0.18
    cpe:2.3:a:redhat:undertow:2.0.18
  • Redhat » Undertow » Version: 2.0.19
    cpe:2.3:a:redhat:undertow:2.0.19
  • Redhat » Undertow » Version: 2.0.2
    cpe:2.3:a:redhat:undertow:2.0.2
  • Redhat » Undertow » Version: 2.0.20
    cpe:2.3:a:redhat:undertow:2.0.20
  • Redhat » Undertow » Version: 2.0.21
    cpe:2.3:a:redhat:undertow:2.0.21
  • Redhat » Undertow » Version: 2.0.22
    cpe:2.3:a:redhat:undertow:2.0.22
  • Redhat » Undertow » Version: 2.0.23
    cpe:2.3:a:redhat:undertow:2.0.23
  • Redhat » Undertow » Version: 2.0.24
    cpe:2.3:a:redhat:undertow:2.0.24
  • Redhat » Undertow » Version: 2.0.25
    cpe:2.3:a:redhat:undertow:2.0.25
  • Redhat » Undertow » Version: 2.0.26
    cpe:2.3:a:redhat:undertow:2.0.26
  • Redhat » Undertow » Version: 2.0.27
    cpe:2.3:a:redhat:undertow:2.0.27
  • Redhat » Undertow » Version: 2.0.28
    cpe:2.3:a:redhat:undertow:2.0.28
  • Redhat » Undertow » Version: 2.0.29
    cpe:2.3:a:redhat:undertow:2.0.29
  • Redhat » Undertow » Version: 2.0.3
    cpe:2.3:a:redhat:undertow:2.0.3
  • Redhat » Undertow » Version: 2.0.4
    cpe:2.3:a:redhat:undertow:2.0.4
  • Redhat » Undertow » Version: 2.0.5
    cpe:2.3:a:redhat:undertow:2.0.5
  • Redhat » Undertow » Version: 2.0.6
    cpe:2.3:a:redhat:undertow:2.0.6
  • Redhat » Undertow » Version: 2.0.7
    cpe:2.3:a:redhat:undertow:2.0.7
  • Redhat » Undertow » Version: 2.0.8
    cpe:2.3:a:redhat:undertow:2.0.8
  • Redhat » Undertow » Version: 2.0.9
    cpe:2.3:a:redhat:undertow:2.0.9


Contact Us

Shodan ® - All rights reserved