CVE Vulnerabilities

CVE-2003-0045

Published: Feb 07, 2003 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Jakarta Tomcat before 3.3.1a on certain Windows systems may allow remote attackers to cause a denial of service (thread hang and resource consumption) via a request for a JSP page containing an MS-DOS device name, such as aux.jsp.

Affected Software

Name Vendor Start Version End Version
Tomcat Apache 3.0 (including) 3.0 (including)
Tomcat Apache 3.1 (including) 3.1 (including)
Tomcat Apache 3.1.1 (including) 3.1.1 (including)
Tomcat Apache 3.2 (including) 3.2 (including)
Tomcat Apache 3.2.1 (including) 3.2.1 (including)
Tomcat Apache 3.2.3 (including) 3.2.3 (including)
Tomcat Apache 3.2.4 (including) 3.2.4 (including)
Tomcat Apache 3.3 (including) 3.3 (including)
Tomcat Apache 3.3.1 (including) 3.3.1 (including)

References