Description
Multiple serious vulnerabilities have been found in Apache Tomcat. Malicious users can exploit these vulnerabilities to bypass security restrictions.
Below is a complete list of vulnerabilities:
- A vulnerability related to security constraints defined by annotations of Servlets can be exploited remotely to bypass security restrictions;
- A vulnerability related URL patterns can be exploited remotely to bypass security restrictions via URL pattern of “”(empty string).
Original advisories
Related products
CVE list
- CVE-2018-1304 warning
- CVE-2018-1305 warning
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!