CVE-2016-0706
Last modified
CVE-2016-0706 is a vulnerability of currently unknown severity. Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 does not place org.apache.catalina.manager.StatusManagerServlet on the org/apache/catalina/core/RestrictedServlets.properties list, which allows remote authenticated users to bypass intended SecurityManager restrictions and read arbitrary HTTP requests, and consequently discover session ID values, via a crafted web application.. EPSS estimates a 6.23% chance of exploitation in the next 30 days.
Description
Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 does not place org.apache.catalina.manager.StatusManagerServlet on the org/apache/catalina/core/RestrictedServlets.properties list, which allows remote authenticated users to bypass intended SecurityManager restrictions and read arbitrary HTTP requests, and consequently discover session ID values, via a crafted web application.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Canonical | Ubuntu Linux | 12.04 | — |
| Canonical | Ubuntu Linux | 14.04 | — |
| Canonical | Ubuntu Linux | 15.10 | — |
| Canonical | Ubuntu Linux | 16.04 | — |
| Debian | Debian Linux | 7.0 | — |
| Debian | Debian Linux | 8.0 | — |
| Apache | Tomcat | 6.0.0 | — |
| Apache | Tomcat | 6.0.1 | — |
| Apache | Tomcat | 6.0.2 | — |
| Apache | Tomcat | 6.0.4 | — |
| Apache | Tomcat | 6.0.10 | — |
| Apache | Tomcat | 6.0.11 | — |
| Apache | Tomcat | 6.0.13 | — |
| Apache | Tomcat | 6.0.14 | — |
| Apache | Tomcat | 6.0.16 | — |
| Apache | Tomcat | 6.0.18 | — |
| Apache | Tomcat | 6.0.20 | — |
| Apache | Tomcat | 6.0.24 | — |
| Apache | Tomcat | 6.0.26 | — |
| Apache | Tomcat | 6.0.28 | — |
| Apache | Tomcat | 6.0.29 | — |
| Apache | Tomcat | 6.0.30 | — |
| Apache | Tomcat | 6.0.32 | — |
| Apache | Tomcat | 6.0.33 | — |
| Apache | Tomcat | 6.0.35 | — |
| Apache | Tomcat | 6.0.36 | — |
| Apache | Tomcat | 6.0.37 | — |
| Apache | Tomcat | 6.0.39 | — |
| Apache | Tomcat | 6.0.41 | — |
| Apache | Tomcat | 6.0.43 | — |
| Apache | Tomcat | 6.0.44 | — |
| Apache | Tomcat | 7.0.0 | Beta |
| Apache | Tomcat | 7.0.2 | Beta |
| Apache | Tomcat | 7.0.4 | Beta |
| Apache | Tomcat | 7.0.5 | Beta |
| Apache | Tomcat | 7.0.6 | — |
| Apache | Tomcat | 7.0.10 | — |
| Apache | Tomcat | 7.0.11 | — |
| Apache | Tomcat | 7.0.12 | — |
| Apache | Tomcat | 7.0.14 | — |
| Apache | Tomcat | 7.0.16 | — |
| Apache | Tomcat | 7.0.19 | — |
| Apache | Tomcat | 7.0.20 | — |
| Apache | Tomcat | 7.0.21 | — |
| Apache | Tomcat | 7.0.22 | — |
| Apache | Tomcat | 7.0.23 | — |
| Apache | Tomcat | 7.0.25 | — |
| Apache | Tomcat | 7.0.26 | — |
| Apache | Tomcat | 7.0.27 | — |
| Apache | Tomcat | 7.0.28 | — |
Showing 50 of 96 affected configurations. See NVD for the full list.
References
- http://marc.info/?l=bugtraq&m=145974991225029&w=2Third Party Advisory
- http://seclists.org/bugtraq/2016/Feb/144Mailing List
- http://tomcat.apache.org/security-6.htmlVendor Advisory
- http://tomcat.apache.org/security-7.htmlVendor Advisory
- http://tomcat.apache.org/security-8.htmlVendor Advisory
- http://tomcat.apache.org/security-9.htmlVendor Advisory
- http://www.debian.org/security/2016/dsa-3530Mailing List, Third Party Advisory
- http://www.debian.org/security/2016/dsa-3552Third Party Advisory
- http://www.debian.org/security/2016/dsa-3609Third Party Advisory
- http://www.ubuntu.com/usn/USN-3024-1Third Party Advisory
- http://marc.info/?l=bugtraq&m=145974991225029&w=2Third Party Advisory
- http://seclists.org/bugtraq/2016/Feb/144Mailing List
- http://tomcat.apache.org/security-6.htmlVendor Advisory
- http://tomcat.apache.org/security-7.htmlVendor Advisory
- http://tomcat.apache.org/security-8.htmlVendor Advisory
- http://tomcat.apache.org/security-9.htmlVendor Advisory
- http://www.debian.org/security/2016/dsa-3530Mailing List, Third Party Advisory
- http://www.debian.org/security/2016/dsa-3552Third Party Advisory
- http://www.debian.org/security/2016/dsa-3609Third Party Advisory
- http://www.ubuntu.com/usn/USN-3024-1Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-0706?
How severe is CVE-2016-0706?
How do I fix CVE-2016-0706?
Are you affected by CVE-2016-0706?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
