CVE Vulnerabilities

CVE-2003-0045

Published: Feb 07, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Jakarta Tomcat before 3.3.1a on certain Windows systems may allow remote attackers to cause a denial of service (thread hang and resource consumption) via a request for a JSP page containing an MS-DOS device name, such as aux.jsp.

Affected Software

NameVendorStart VersionEnd Version
TomcatApache3.0 (including)3.0 (including)
TomcatApache3.1 (including)3.1 (including)
TomcatApache3.1.1 (including)3.1.1 (including)
TomcatApache3.2 (including)3.2 (including)
TomcatApache3.2.1 (including)3.2.1 (including)
TomcatApache3.2.3 (including)3.2.3 (including)
TomcatApache3.2.4 (including)3.2.4 (including)
TomcatApache3.3 (including)3.3 (including)
TomcatApache3.3.1 (including)3.3.1 (including)

References