Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22571
HistoryFeb 25, 2020 - 5:53 a.m.

Authentication Bypass

2020-02-2505:53:16
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
30

0.974 High

EPSS

Percentile

99.9%

tomcat-coyote is vulnerable to authentication bypass. The vulnerability exists as it does not disable AjpProtocol by default, and allows any unauthenticated client to read or write application files on the server.

References