CVE-2007-5333
Apache Tomcat 6.0.15 - Cookie Quote Handling Remote Information Disclosure
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
Apache Tomcat 6.0.0 through 6.0.14, 5.5.0 through 5.5.25, and 4.1.0 through 4.1.36 does not properly handle (1) double quote (") characters or (2) %5C (encoded backslash) sequences in a cookie value, which might cause sensitive information such as session IDs to be leaked to remote attackers and enable session hijacking attacks. NOTE: this issue exists because of an incomplete fix for CVE-2007-3385.
Apache Tomcat 6.0.0 hasta 6.0.14, 5.5.0 hasta 5.5.25, 4.1.36 y 4.1.0 al no manejar adecuadamente secuencias (1) caracteres de dobles comillas (") o (2) secuencias de contrabarra codificadas %5C en un valor de cookie, podría provocar que información sensible como los IDs de sesión sean filtradas a atacantes remotos, así como habilitar ataques de secuestro de sesión.
NOTA: este problema existe debido a una arreglo erroneo de CVE-2007-3385.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2007-10-10 CVE Reserved
- 2008-02-09 First Exploit
- 2008-02-11 CVE Published
- 2024-08-07 CVE Updated
- 2024-11-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (58)
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/31130 | 2008-02-09 | |
http://www.securityfocus.com/bid/27706 | 2024-08-07 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apache Search vendor "Apache" | Tomcat Search vendor "Apache" for product "Tomcat" | >= 4.1.0 <= 4.1.36 Search vendor "Apache" for product "Tomcat" and version " >= 4.1.0 <= 4.1.36" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Tomcat Search vendor "Apache" for product "Tomcat" | >= 5.5.0 <= 5.5.25 Search vendor "Apache" for product "Tomcat" and version " >= 5.5.0 <= 5.5.25" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Tomcat Search vendor "Apache" for product "Tomcat" | >= 6.0.0 <= 6.0.14 Search vendor "Apache" for product "Tomcat" and version " >= 6.0.0 <= 6.0.14" | - |
Affected
|