Lucene search

K
githubGitHub Advisory DatabaseGHSA-6J8F-66VH-39MJ
HistoryMay 01, 2022 - 6:13 p.m.

Apache Tomcat Mishandles Character Sequence in Cookies

2022-05-0118:13:14
CWE-200
GitHub Advisory Database
github.com
13
apache tomcat
cookie handling
session hijacking
security vulnerability

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

EPSS

0.041

Percentile

92.3%

Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 does not properly handle the \" character sequence in a cookie value, which might cause sensitive information such as session IDs to be leaked to remote attackers and enable session hijacking attacks.

Affected configurations

Vulners
Node
org.apache.tomcattomcatRange3.3.0–3.3.2
OR
org.apache.tomcattomcatRange4.1.0–4.1.36
OR
org.apache.tomcattomcatRange5.0.0–5.0.30
OR
org.apache.tomcattomcatRange5.5.0–5.5.24
OR
org.apache.tomcattomcatRange6.0.0–6.0.13
VendorProductVersionCPE
org.apache.tomcattomcat*cpe:2.3:a:org.apache.tomcat:tomcat:*:*:*:*:*:*:*:*

References

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

EPSS

0.041

Percentile

92.3%