The HTTP/2 implementation in Apache Tomcat 9.0.0.M1 to 9.0.0.M21 and 8.5.0 to 8.5.15 bypassed a number of security checks that prevented directory traversal attacks. It was therefore possible to bypass security constraints using a specially crafted URL.
CVSS Details
- CVSS 3.0 Base Score: 7.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apache Tomcat | — | Upgrade Apache Tomcat to 9.0.0Upgrade Apache Tomcat to 8.5.16Upgrade Apache Tomcat to the latest available version | Aug 11, 2017 | Aug 11, 2017 |
| Debian | — | Upgrade tomcat8 | Sep 16, 2017 | Aug 10, 2017 |
| Oracle Solaris | — | Upgrade web/java-servlet/tomcat-8 to version 8.5.20-0.175.3.25.0.1.0 on Solaris 11.3Upgrade web/java-servlet/tomcat-8/tomcat-admin to version 8.5.20-0.175.3.25.0.1.0 on Solaris 11.3Upgrade web/java-servlet/tomcat-8/tomcat-examples to version 8.5.20-0.175.3.25.0.1.0 on Solaris 11.3 | Nov 30, 2017 | Aug 10, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub