Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-45143

The JsonErrorReportValve in Apache Tomcat 8.5.83, 9.0.40 to 9.0.68 and 10.1.0-M1 to 10.1.1 did not escape the type, message or description values. In some circumstances these are constructed from user provided data and it was therefore possible for users to supply values that invalidated or manipulated the JSON output.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.5%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-45143
  • Apache » Tomcat » Version: 10.1.0
    cpe:2.3:a:apache:tomcat:10.1.0
  • Apache » Tomcat » Version: 10.1.1
    cpe:2.3:a:apache:tomcat:10.1.1
  • Apache » Tomcat » Version: 8.5.83
    cpe:2.3:a:apache:tomcat:8.5.83
  • Apache » Tomcat » Version: 9.0.40
    cpe:2.3:a:apache:tomcat:9.0.40
  • Apache » Tomcat » Version: 9.0.41
    cpe:2.3:a:apache:tomcat:9.0.41
  • Apache » Tomcat » Version: 9.0.42
    cpe:2.3:a:apache:tomcat:9.0.42
  • Apache » Tomcat » Version: 9.0.43
    cpe:2.3:a:apache:tomcat:9.0.43
  • Apache » Tomcat » Version: 9.0.44
    cpe:2.3:a:apache:tomcat:9.0.44
  • Apache » Tomcat » Version: 9.0.45
    cpe:2.3:a:apache:tomcat:9.0.45
  • Apache » Tomcat » Version: 9.0.46
    cpe:2.3:a:apache:tomcat:9.0.46
  • Apache » Tomcat » Version: 9.0.47
    cpe:2.3:a:apache:tomcat:9.0.47
  • Apache » Tomcat » Version: 9.0.48
    cpe:2.3:a:apache:tomcat:9.0.48
  • Apache » Tomcat » Version: 9.0.49
    cpe:2.3:a:apache:tomcat:9.0.49
  • Apache » Tomcat » Version: 9.0.50
    cpe:2.3:a:apache:tomcat:9.0.50
  • Apache » Tomcat » Version: 9.0.51
    cpe:2.3:a:apache:tomcat:9.0.51
  • Apache » Tomcat » Version: 9.0.52
    cpe:2.3:a:apache:tomcat:9.0.52
  • Apache » Tomcat » Version: 9.0.53
    cpe:2.3:a:apache:tomcat:9.0.53
  • Apache » Tomcat » Version: 9.0.54
    cpe:2.3:a:apache:tomcat:9.0.54
  • Apache » Tomcat » Version: 9.0.55
    cpe:2.3:a:apache:tomcat:9.0.55
  • Apache » Tomcat » Version: 9.0.56
    cpe:2.3:a:apache:tomcat:9.0.56
  • Apache » Tomcat » Version: 9.0.57
    cpe:2.3:a:apache:tomcat:9.0.57
  • Apache » Tomcat » Version: 9.0.58
    cpe:2.3:a:apache:tomcat:9.0.58
  • Apache » Tomcat » Version: 9.0.59
    cpe:2.3:a:apache:tomcat:9.0.59
  • Apache » Tomcat » Version: 9.0.60
    cpe:2.3:a:apache:tomcat:9.0.60
  • Apache » Tomcat » Version: 9.0.61
    cpe:2.3:a:apache:tomcat:9.0.61
  • Apache » Tomcat » Version: 9.0.62
    cpe:2.3:a:apache:tomcat:9.0.62
  • Apache » Tomcat » Version: 9.0.63
    cpe:2.3:a:apache:tomcat:9.0.63
  • Apache » Tomcat » Version: 9.0.64
    cpe:2.3:a:apache:tomcat:9.0.64
  • Apache » Tomcat » Version: 9.0.65
    cpe:2.3:a:apache:tomcat:9.0.65
  • Apache » Tomcat » Version: 9.0.67
    cpe:2.3:a:apache:tomcat:9.0.67
  • Apache » Tomcat » Version: 9.0.68
    cpe:2.3:a:apache:tomcat:9.0.68


Contact Us

Shodan ® - All rights reserved