[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2012-3546Date: (C)2012-12-20   (M)2023-12-22


org/apache/catalina/realm/RealmBase.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.30, when FORM authentication is used, allows remote attackers to bypass security-constraint checks by leveraging a previous setUserPrincipal call and then placing /j_security_check at the end of a URI.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 4.3
Exploit Score: 8.6
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: NONE
Integrity: PARTIAL
Availability: NONE
  
Reference:
SECTRACK-1027833
http://archives.neohapsis.com/archives/bugtraq/2012-12/0044.html
SECUNIA-51984
SECUNIA-52054
BID-56812
SECUNIA-57126
HPSBST02955
RHSA-2013:0004
RHSA-2013:0005
RHSA-2013:0146
RHSA-2013:0147
RHSA-2013:0151
RHSA-2013:0157
RHSA-2013:0158
RHSA-2013:0162
RHSA-2013:0163
RHSA-2013:0164
RHSA-2013:0191
RHSA-2013:0192
RHSA-2013:0193
RHSA-2013:0194
RHSA-2013:0195
RHSA-2013:0196
RHSA-2013:0197
RHSA-2013:0198
RHSA-2013:0221
RHSA-2013:0235
RHSA-2013:0623
RHSA-2013:0640
RHSA-2013:0641
RHSA-2013:0642
SSRT101139
SSRT101182
USN-1685-1
http://svn.apache.org/viewvc/tomcat/tc7.0.x/trunk/java/org/apache/catalina/realm/RealmBase.java?r1=1377892&r2=1377891&pathrev=1377892
http://svn.apache.org/viewvc/tomcat/tc7.0.x/trunk/webapps/docs/changelog.xml?r1=1377892&r2=1377891&pathrev=1377892
http://svn.apache.org/viewvc?view=revision&revision=1377892
http://tomcat.apache.org/security-6.html
http://tomcat.apache.org/security-7.html
openSUSE-SU-2012:1700
openSUSE-SU-2012:1701
openSUSE-SU-2013:0147
oval:org.mitre.oval:def:19305

CPE    66
cpe:/a:apache:tomcat:6.0
cpe:/a:apache:tomcat:7.0.0:beta
cpe:/a:apache:tomcat:6.0.18
cpe:/a:apache:tomcat:6.0.2:beta
...
CWE    1
CWE-264
OVAL    10
oval:org.secpod.oval:def:1500119
oval:org.secpod.oval:def:701135
oval:org.secpod.oval:def:202639
oval:org.secpod.oval:def:601073
...

© SecPod Technologies