vulnerability
Apache Tomcat: Important: Security Constraint Bypass (CVE-2017-5664)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:N/I:P/A:N) | 2017-06-06 | 2017-06-07 | 2025-04-25 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
2017-06-06
Added
2017-06-07
Modified
2025-04-25
Description
The error page mechanism of the Java Servlet Specification requires that,
when an error occurs and an error page is configured for the error that
occurred, the original request and response are forwarded to the error
page. This means that the request is presented to the error page with the
original HTTP method.
Solution(s)
apache-tomcat-upgrade-7_0_78apache-tomcat-upgrade-8_0_44apache-tomcat-upgrade-8_5_15

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.