Total vulnerabilities in the database
The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 through 5.5.20 does not return a -1 to indicate when a certain error condition has occurred, which can cause Tomcat to send POST content from one request to a different request.
Software | From | Fixed in |
---|---|---|
apache / tomcat | 5.5.18 | 5.5.18.x |
apache / tomcat | 5.5.12 | 5.5.12.x |
apache / tomcat | 5.5.14 | 5.5.14.x |
apache / tomcat | 5.5.10 | 5.5.10.x |
apache / tomcat | 5.5.11 | 5.5.11.x |
apache / tomcat | 5.5.20 | 5.5.20.x |
apache / tomcat | 5.5.15 | 5.5.15.x |
apache / tomcat | 4.1.33 | 4.1.33.x |
apache / tomcat | 5.5.13 | 5.5.13.x |
apache / tomcat | 5.5.16 | 5.5.16.x |
apache / tomcat | 5.5.17 | 5.5.17.x |
apache / tomcat | 5.5.19 | 5.5.19.x |
apache / tomcat | 4.1.34 | 4.1.34.x |
apache / tomcat | 4.1.32 | 4.1.32.x |