PT-2025-10603 · Apache+11 · Apache Tomcat+11

Sw0Rd1Ight

·

Published

2025-02-10

·

Updated

2026-06-02

·

CVE-2025-24813

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apache Tomcat versions 9.0.0.M1 through 9.0.98 Apache Tomcat versions 10.1.0-M1 through 10.1.34 Apache Tomcat versions 11.0.0-M1 through 11.0.2
Description The issue affects Apache Tomcat due to a path equivalence vulnerability, allowing remote code execution and/or information disclosure and/or malicious content added to uploaded files via the write-enabled default servlet. A malicious user can view security-sensitive files and/or inject content into those files if certain conditions are met, including writes enabled for the default servlet, support for partial PUT, and specific knowledge of security-sensitive file names. Additionally, remote code execution is possible under specific conditions, including the use of Tomcat's file-based session persistence and the presence of a library that can be leveraged in a deserialization attack. It is estimated that over 10.7 million services are potentially affected.
Recommendations To resolve the issue, upgrade to version 11.0.3, 10.1.35, or 9.0.98, which fixes the issue. As a temporary workaround, consider disabling the write-enabled default servlet until a patch is available. Restrict access to security-sensitive files and directories to minimize the risk of exploitation. Avoid using partial PUT requests until the issue is resolved.

Exploit

Fix

RCE

DoS

Deserialization of Untrusted Data

HTTP Request/Response Smuggling

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:3645
ALSA-2025:3683
ALSA-2025:7494
ALSA-2025:7497
ALSA-2025_16880
ALSA-2025_3645
ALSA-2025_3683
ALT-PU-2025-13307
ALT-PU-2025-4735
ALT-PU-2025-5038
ALT-PU-2025-7452
BDU:2025-02511
BIT-TOMCAT-2025-24813
CESA-2025_3683
CVE-2025-24813
DLA-4108-1
DSA-5893-1
GHSA-83QJ-6FR2-VHQG
INFSA-2025_3645
INFSA-2025_3683
MGASA-2025-0105
OPENSUSE-SU-2025:14896-1
OPENSUSE-SU-2025:14897-1
OPENSUSE-SU-2025_1024-1
OPENSUSE-SU-2025_1126-1
RHSA-2025:3454
RHSA-2025:3608
RHSA-2025:3645
RHSA-2025:3646
RHSA-2025:3647
RHSA-2025:3683
RHSA-2025:3684
RHSA-2025:7494
RHSA-2025:7497
RHSA-2025_3645
RHSA-2025_3683
SUSE-SU-2025:0954-1
SUSE-SU-2025:1024-1
SUSE-SU-2025:1126-1
SUSE-SU-2025_0954-1
SUSE-SU-2026:1058-1
USN-7525-1
USN-7525-2

Affected Products

Alt Linux
Almalinux
Apache Tomcat
Astra Linux
Centos
Debian
Linuxmint
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu