This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:apache:tomcat:5.0.5
Detail
VendorApacheFirst view 2007-05-09
ProductTomcatLast view 2012-11-30
Version5.0.5TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:apache:tomcat

Activity : Yearly

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
52012-11-30CVE-2012-5568NetworkLowNone Requ...
7.52009-11-12CVE-2009-3548NetworkLowNone Requ...
2.62009-04-09CVE-2008-5519NetworkHighNone Requ...
52008-02-11CVE-2007-5333NetworkLowNone Requ...
4.32007-08-14CVE-2007-3385NetworkMediumNone Requ...
Hide | Show 5 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
4.32007-08-14CVE-2007-3382NetworkMediumNone Requ...
3.52007-06-14CVE-2007-2450NetworkMediumRequires ...
4.32007-06-14CVE-2007-2449NetworkMediumNone Requ...
4.32007-05-21CVE-2007-1355NetworkMediumNone Requ...
4.32007-05-09CVE-2006-7196NetworkMediumNone Requ...

CWE : Common Weakness Enumeration

%idName
50% (4)CWE-200Information Exposure
25% (2)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
12% (1)CWE-255Credentials Management
12% (1)CWE-16Configuration

Oval Markup Language : Definitions

OvalIDName
oval:org.mitre.oval:def:6111HP-UX running Apache, Remote Arbitrary Code Execution, Cross Site Scripting (...
oval:org.mitre.oval:def:10578Multiple cross-site scripting (XSS) vulnerabilities in certain JSP files in t...
oval:org.mitre.oval:def:11287Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2...
oval:org.mitre.oval:def:11269Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1...
oval:org.mitre.oval:def:9549Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1...
Hide | Show 2 More...
idName
oval:org.mitre.oval:def:11177Apache Tomcat 6.0.0 through 6.0.14, 5.5.0 through 5.5.25, and 4.1.0 through 4...
oval:org.mitre.oval:def:7033HP-UX Running Tomcat Servlet Engine, Remote Increase in Privilege, Arbitrary ...

Open Source Vulnerability Database (OSVDB)

idDescription
60176Apache Tomcat Windows Installer Admin Default Password
53381Apache Tomcat JK Connector Content-Length Header Cross-user Information Discl...
41435Apache Tomcat %5C Cookie Handling Session ID Disclosure
37071Apache Tomcat Cookie Handling Session ID Disclosure
37070Apache Tomcat Cookie Handling Quote Delimiter Session ID Disclosure
Hide | Show 4 More...
idDescription
36080Apache Tomcat JSP Examples Crafted URI XSS
36079Apache Tomcat Manager Uploaded Filename XSS
34888Apache Tomcat Example Calendar Application cal2.jsp time Parameter XSS
34875Apache Tomcat appdev/sample/web/hello.jsp Multiple Parameter XSS

Metasploit Exploits

idDescription
2009-11-09Apache Tomcat Manager Application Deployer Authenticated Code Execution