Open redirect in Apache Tomcat - CVE-2023-41080
Published: August 29, 2023 / Updated: August 16, 2024
Vulnerability details
The vulnerability allows a remote attacker to redirect victims to arbitrary URL.
The vulnerability exists due to improper sanitization of user-supplied data, if the ROOT (default) web application is configured to use FORM authentication. A remote attacker can create a link that leads to a trusted website, however, when clicked, redirects the victim to arbitrary domain.
Successful exploitation of this vulnerability may allow a remote attacker to perform a phishing attack and steal potentially sensitive information.
Affected software
JBoss Web Server
Debian Linux
Amazon Linux AMI
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise High Performance Computing LTSS 15
SUSE Linux Enterprise High Performance Computing ESPOS 15
SUSE Linux Enterprise High Performance Computing 12
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Server 12
SUSE CaaS Platform
SUSE Manager Server
SUSE Manager Proxy
SUSE Manager Retail Branch Server
SUSE Enterprise Storage
Anolis OS
SUSE Linux Enterprise High Performance Computing 15 SP1 LTSS
SUSE Linux Enterprise Server 15 SP1 LTSS
SUSE Linux Enterprise Server 15 SP2 LTSS
SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS
SUSE Linux Enterprise Server 15 SP3 LTSS
Web and Scripting Module
openEuler
Oracle Solaris
IBM i Modernization Engine for Lifecycle Integration
IBM Engineering Requirements Management DOORS Next
CICS Transaction Gateway for Multiplatforms
CICS Transaction Gateway Desktop Edition
webMethods developer portal
Oracle Communications Policy Management
Storage Copy Data Management
Cloud Pak for Network Automation
Dell Policy Manager for Secure Connect Gateway (SCG)
UrbanCode Build
Index Engines CyberSense
EMC Cloud Tiering Appliance
CloudBoost Virtual Appliance
QRadar Suite
Juniper Secure Analytics (JSA)
AMQ Streams
AMQ Broker
IBM Watson Discovery for IBM Cloud Pak for Data
IBM Rational Build Forge
IBM Maximo Application Suite
Oracle Communications Session Report Manager
Netcool Operations Insight
IBM Process Mining
Red Hat OpenShift Dev Spaces
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data
Dell Secure Connect Gateway
IBM UrbanCode Release
IBM Integration Bus
IBM Qradar SIEM
IBM App Connect Professional
MySQL Enterprise Monitor
Oracle Communications Element Manager
IBM Data Risk Manager
Oracle Commerce Guided Search
Tomcat
jws5-tomcat-native (Red Hat package)
tomcat8
tomcat
tomcat-help
tomcat-jsvc
tomcat-javadoc
tomcat-docs-webapp
tomcat-jsp-2_3-api
tomcat-lib
tomcat-webapps
tomcat-el-3_0-api
tomcat-admin-webapps
tomcat-servlet-4_0-api
tomcat9 (Debian package)
jws5-tomcat (Red Hat package)
tomcat-el-3.0-api
tomcat-jsp-2.3-api
tomcat-servlet-4.0-api
tomcat9
tomcat-doc
tomcat10 (Debian package)
jws6-tomcat (Red Hat package)
RecoverPoint for VMs
Dell EMC VxRail Appliance
Operational Decision Manager
How to mitigate CVE-2023-41080
IBM i Modernization Engine for Lifecycle Integration - update to 1.4.5
QRadar Suite - update to 1.10.17.0
AMQ Streams - update to 2.6.0
IBM Watson Discovery for IBM Cloud Pak for Data - update to 4.8.0
JBoss Web Server - addressed in versions 5.7.7, 6.0.1
IBM Qradar SIEM - update to 7.5.0 Update Pack 7 IF03
Juniper Secure Analytics (JSA) - update to 7.5.0 UP7 IF03
AMQ Broker - update to 7.11.3
IBM Rational Build Forge - update to 8.0.0.24
IBM Maximo Application Suite - addressed in versions 8.10.6, 8.11.1
IBM Engineering Requirements Management DOORS Next - update to 9.7.2.8
webMethods developer portal - update to 11.1.6
Tomcat - update to D.9.0.87.01
jws5-tomcat-native (Red Hat package) - addressed in versions 1.2.31-16.redhat_16.el7jws, 1.2.31-16.redhat_16.el8jws, 1.2.31-16.redhat_16.el9jws
Netcool Operations Insight - update to 1.6.11
IBM Process Mining - update to 1.14.2.0.1
IBM Data Risk Manager - update to 2.0.6.20
Storage Copy Data Management - update to 2.2.23.0
Cloud Pak for Network Automation - update to 2.6.4
Red Hat OpenShift Dev Spaces - update to 3.15.0
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data - update to 4.8.2
Dell Policy Manager for Secure Connect Gateway (SCG) - update to 5.20
Dell Secure Connect Gateway - update to 5.20.00.10
RecoverPoint for VMs - update to 6.0.SP1.P1
UrbanCode Build - update to 6.1.7.10
IBM UrbanCode Release - update to 6.2.5.11
Dell EMC VxRail Appliance - update to 8.0.201
Index Engines CyberSense - update to 8.4
tomcat8 - update to 8.5.93-1.94
Operational Decision Manager - addressed in versions 8.10.5.1 Interim fix 44, 8.11.0.1 Interim fix 24, 8.11.1 Interim fix 13, 8.12.0 Interim fix 5
tomcat - update to 9.0.10-29
tomcat-help - update to 9.0.10-29
tomcat-jsvc - update to 9.0.10-29
tomcat-javadoc - update to 9.0.36-3.108.1
tomcat-docs-webapp - update to 9.0.36-3.108.1
tomcat - addressed in versions 9.0.36-3.108.1, 9.0.36-150100.4.98.1, 9.0.82-150200.46.1
tomcat-jsp-2_3-api - addressed in versions 9.0.36-3.108.1, 9.0.36-150100.4.98.1, 9.0.82-150200.46.1
tomcat-lib - addressed in versions 9.0.36-3.108.1, 9.0.36-150100.4.98.1, 9.0.82-150200.46.1
tomcat-webapps - addressed in versions 9.0.36-3.108.1, 9.0.36-150100.4.98.1, 9.0.82-150200.46.1
tomcat-el-3_0-api - addressed in versions 9.0.36-3.108.1, 9.0.36-150100.4.98.1, 9.0.82-150200.46.1
tomcat-admin-webapps - addressed in versions 9.0.36-3.108.1, 9.0.36-150100.4.98.1, 9.0.82-150200.46.1
tomcat-servlet-4_0-api - addressed in versions 9.0.36-3.108.1, 9.0.36-150100.4.98.1, 9.0.82-150200.46.1
tomcat9 (Debian package) - update to 9.0.43-2~deb11u7
jws5-tomcat (Red Hat package) - addressed in versions 9.0.62-19.redhat_00017.1.el7jws, 9.0.62-19.redhat_00017.1.el8jws, 9.0.62-19.redhat_00017.1.el9jws
tomcat-admin-webapps - addressed in versions 9.0.62-30, 9.0.80-1
tomcat - addressed in versions 9.0.62-30, 9.0.80-1
tomcat-docs-webapp - addressed in versions 9.0.62-30, 9.0.80-1
tomcat-el-3.0-api - addressed in versions 9.0.62-30, 9.0.80-1
tomcat-jsp-2.3-api - addressed in versions 9.0.62-30, 9.0.80-1
tomcat-lib - addressed in versions 9.0.62-30, 9.0.80-1
tomcat-servlet-4.0-api - addressed in versions 9.0.62-30, 9.0.80-1
tomcat-webapps - addressed in versions 9.0.62-30, 9.0.80-1
tomcat9 - update to 9.0.71-1
tomcat-doc - update to 9.0.80-1
IBM Integration Bus - update to 10.1.0.2
tomcat10 (Debian package) - update to 10.1.6-1+deb12u1
jws6-tomcat (Red Hat package) - addressed in versions 10.1.8-6.redhat_00013.1.el8jws, 10.1.8-6.redhat_00013.1.el9jws
Oracle Solaris - update to 11.4 SRU 62
EMC Cloud Tiering Appliance - update to 13.1.0.2.35
CloudBoost Virtual Appliance - update to 19.12.0.1
Links to Public Exploits and PoC-codes
External References
Related Security Bulletins
- Open redirect in Apache Tomcat
- SUSE update for tomcat
- Debian update for tomcat9
- Debian update for tomcat10
- Oracle Solaris update for thrid-party components
- Multiple vulnerabilities in MySQL Enterprise Monitor
- Multiple vulnerabilities in Oracle Communications Session Report Manager
- Multiple vulnerabilities in Oracle Communications Element Manager
- Multiple vulnerabilities in Oracle Communications Policy Management
- SUSE update for tomcat
- Multiple vulnerabilities in IBM Operational Decision Manager
- Multiple vulnerabilities in Red Hat AMQ Broker 7.11
- Amazon Linux AMI update for tomcat8
- Open redirect in IBM Integration Bus
- Multiple vulnerabilities in IBM Process Mining
- Multiple vulnerabilities in IBM UrbanCode Release
- Multiple vulnerabilities in IBM UrbanCode Build
- Multiple vulnerabilities in IBM Rational Build Forge
- SUSE update for tomcat
- Multiple vulnerabilities in Dell Secure Connect Gateway
- Multiple vulnerabilities in Dell Secure Connect Gateway Policy Manager
- Multiple vulnerabilities in IBM QRadar Suite software
- IBM Watson Discovery Cartridge for IBM Cloud Pak for Data update for Apache Tomcat
- Dell EMC Cloud Tiering Appliance update for third-party software
- Multiple vulnerabilities in Index Engines CyberSense
- IBM Maximo Application Suite - Monitor Component update for Apache Tomcat
- Multiple vulnerabilities in Red Hat AMQ Streams
- Multiple vulnerabilities in Red Hat JBoss Web Server 5.7
- Multiple vulnerabilities in JBoss Enterprise Web Server 5 for RHEL 7, 8, and 9
- Multiple vulnerabilities in IBM i Modernization Engine for Lifecycle Integration
- Multiple vulnerabilities in IBM Netcool Operations Insight
- Multiple vulnerabilities in IBM QRadar SIEM
- Multiple vulnerabilities in Juniper Secure Analytics (JSA)
- IBM App Connect Professional update for Apache Tomcat
- Multiple vulnerabilities in IBM Cloud Pak for Network Automation
- Multiple vulnerabilities in IBM Data Risk Manager
- Open redirect in IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data
- Multiple vulnerabilities in IBM Engineering Requirements Management DOORS/DWA
- openEuler update for tomcat
- Multiple vulnerabilities in Red Hat JBoss Web Server 6.0
- Multiple vulnerabilities in JBoss Enterprise Web Server 6 for RHEL 8 and 9
- Multiple vulnerabilities in IBM Storage Copy Data Management
- Multiple vulnerabilities in Oracle Commerce Guided Search
- Multiple vulnerabilities in Red Hat OpenShift Dev Spaces
- HP-UX update for Tomcat
- Multiple vulnerabilities in Dell RecoverPoint for Virtual Machines
- Amazon Linux AMI update for tomcat9
- Anolis OS update for tomcat
- Anolis OS update for tomcat
- Multiple vulnerabilities in Dell EMC VxRail Appliance
- Dell CloudBoost Virtual Appliance update for third-party components
- Multiple vulnerabilities in IBM webMethods developer portal
- Multiple vulnerabilities in IBM CICS Transaction Gateway for Multiplatforms
- Multiple vulnerabilities in CICS Transaction Gateway Desktop Edition