PT-2016-1314 · Apache+5 · Apache Tomcat+5

Published

2016-02-08

·

Updated

2024-06-15

·

CVE-2015-5351

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Apache Tomcat versions 7.0.0 through 7.0.67 Apache Tomcat versions 8.0.0 through 8.0.30 Apache Tomcat versions 9.0.0.M1 and earlier
Description The issue is related to the Manager and Host Manager applications in Apache Tomcat, which establish sessions and send CSRF tokens for arbitrary new requests. This allows remote attackers to bypass a CSRF protection mechanism by using a token. The vulnerability is related to the inclusion of a valid CSRF token on the index page of the Manager and Host Manager applications when issuing a redirect as a result of an unauthenticated request to the root of the web application.
Recommendations For Apache Tomcat versions 7.0.0 through 7.0.67, update to version 7.0.68 or later. For Apache Tomcat versions 8.0.0 through 8.0.30, update to version 8.0.31 or later. For Apache Tomcat versions 9.0.0.M1 and earlier, update to version 9.0.0.M2 or later. As a temporary workaround, consider restricting access to the Manager and Host Manager applications to minimize the risk of exploitation.

Fix

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2016-1193
BDU:2016-00613
CESA-2016_2599
CVE-2015-5351
DLA-435-1
DSA-3530-1
DSA-3552-1
DSA-3609-1
GHSA-W7CG-5969-678W
MGASA-2016-0090
OPENSUSE-SU-2016_0865-1
OPENSUSE-SU-2024:10446-1
OPENSUSE-SU-2024:13441-1
RHSA-2016:1087
RHSA-2016:1088
RHSA-2016:2599
RHSA-2016:2807
RHSA-2016_2599
SUSE-SU-2016:0769-1
SUSE-SU-2016:0822-1
USN-3024-1

Affected Products

Alt Linux
Apache Tomcat
Centos
Red Hat
Suse
Ubuntu