Known vulnerabilities in tomcat9 (Debian package) - page 2

Vendor: Debian
Software CPE: cpe:2.3:o:debian:tomcat9_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 32
Public exploits: 9
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting tomcat9 (Debian package) tomcat9 (Debian package) is affected by 32 known vulnerabilities: 3 high, 23 medium, 6 low Critical High Medium Low

Vulnerabilities (32)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48779 - Resource Management Errors
CVE-2020-17527
CWE-399 Medium
No
No
9.0.31-1~deb10u3 03.12.2020 SB2020120401
SB2020120509
SB2020120510
and 21 more
#VU47516 - Resource Management Errors
CVE-2020-13943
CWE-399 Medium
No
No
9.0.31-1~deb10u3 12.10.2020 SB2020101213
SB2020110102
SB2020110603
and 6 more
#VU29724 - Resource Management Errors
CVE-2020-13934
CWE-399 Medium
No
No
9.0.31-1~deb10u2 14.07.2020 SB2020071406
SB2020072801
SB2020072921
and 5 more
#VU29723 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-13935
CWE-835 Medium
Available
No
9.0.31-1~deb10u2 14.07.2020 SB2020071406
SB2020072801
SB2020072921
and 14 more
#VU29333 - Resource Management Errors
CVE-2020-11996
CWE-399 Medium
Available
No
9.0.31-1~deb10u2 27.06.2020 SB2020062701
SB2020062802
SB2020072414
and 6 more
#VU28158 - Deserialization of Untrusted Data
CVE-2020-9484
CWE-502 High
Available
No
9.0.31-1~deb10u2, 9.0.43-2~deb11u4 21.05.2020 SB2020052124
SB2020052501
SB2020053102
and 47 more
#VU25807 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-1935
CWE-444 Medium
No
No
9.0.31-1~deb10u1 06.03.2020 SB2020022111
SB2020031401
SB2020031402
and 15 more
#VU25806 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-17569
CWE-444 Medium
No
No
9.0.31-1~deb10u1 06.03.2020 SB2020022111
SB2020031401
SB2020031402
and 6 more
#VU25502 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-1938
CWE-22 High
Available
Exploited
9.0.31-1~deb10u1 21.02.2020 SB2020022111
SB2020031401
SB2020031402
and 31 more
#VU25002 - Session Fixation
CVE-2019-17563
CWE-384 Low
No
No
9.0.31-1~deb10u1 06.02.2020 SB2019121315
SB2020011492
SB2020011519
and 16 more
#VU25000 - Permissions, Privileges, and Access Controls
CVE-2019-12418
CWE-264 Low
No
No
9.0.31-1~deb10u1 06.02.2020 SB2019112222
SB2020011492
SB2020011519
and 4 more
#VU20992 - Resource Management Errors
CVE-2019-10072
CWE-399 Medium
No
No
9.0.31-1~deb10u1 10.09.2019 SB2019091025
SB2019112011
SB2019112012
and 14 more


Showing elements 21 - 40 out of 32