NVD - CVE-2017-12615

6 min read Original article ↗

CVE Modified by CISA-ADP 10/21/2025 8:16:04 PM

Action Type Old Value New Value
Added Reference
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-12615

CVE Modified by CISA-ADP 10/21/2025 4:16:49 PM

Action Type Old Value New Value
Removed Reference
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-12615

CVE Modified by CISA-ADP 10/21/2025 3:17:05 PM

Action Type Old Value New Value
Added Reference
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-12615

Modified Analysis by NIST 3/13/2025 5:00:31 PM

Action Type Old Value New Value
Changed CPE Configuration
AND
     OR
          *cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:* versions from (including) 7.0.0 from (including) 7.0.79
     OR
          cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
AND
     OR
          *cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:* versions from (including) 7.0.0 from (including) 7.0.79
     OR
          cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Changed CPE Configuration
AND
     OR
          *cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:* versions from (including) 7.0.0 from (including) 7.0.79
     OR
          cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
AND
     OR
          *cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:* versions from (including) 7.0.0 from (including) 7.0.79
     OR
          cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

CVE Modified by CISA-ADP 2/06/2025 4:15:09 PM

Action Type Old Value New Value
Added CVSS V3.1
AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Added CWE
CWE-434

Modified Analysis by NIST 1/23/2025 10:34:44 AM

Action Type Old Value New Value

CVE Modified by CVE 11/20/2024 10:09:53 PM

Action Type Old Value New Value
Added Reference
http://breaktoprotect.blogspot.com/2017/09/the-case-of-cve-2017-12615-tomcat-7-put.html
Added Reference
http://www.securityfocus.com/bid/100901
Added Reference
http://www.securitytracker.com/id/1039392
Added Reference
https://access.redhat.com/errata/RHSA-2017:3080
Added Reference
https://access.redhat.com/errata/RHSA-2017:3081
Added Reference
https://access.redhat.com/errata/RHSA-2017:3113
Added Reference
https://access.redhat.com/errata/RHSA-2017:3114
Added Reference
https://access.redhat.com/errata/RHSA-2018:0465
Added Reference
https://access.redhat.com/errata/RHSA-2018:0466
Added Reference
https://github.com/breaktoprotect/CVE-2017-12615
Added Reference
https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708%40%3Cdev.tomcat.apache.org%3E
Added Reference
https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7%40%3Cdev.tomcat.apache.org%3E
Added Reference
https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424%40%3Cdev.tomcat.apache.org%3E
Added Reference
https://lists.apache.org/thread.html/8fcb1e2d5895413abcf266f011b9918ae03e0b7daceb118ffbf23f8c%40%3Cannounce.tomcat.apache.org%3E
Added Reference
https://lists.apache.org/thread.html/r6d03e45b81eab03580cf7f8bb51cb3e9a1b10a2cc0c6a2d3cc92ed0c%40%3Cannounce.apache.org%3E
Added Reference
https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c%40%3Cdev.tomcat.apache.org%3E
Added Reference
https://security.netapp.com/advisory/ntap-20171018-0001/
Added Reference
https://www.exploit-db.com/exploits/42953/
Added Reference
https://www.synology.com/support/security/Synology_SA_17_54_Tomcat

Modified Analysis by NIST 7/16/2024 1:58:22 PM

Action Type Old Value New Value
Added CVSS V3.1
NIST AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Removed CVSS V3
NIST AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Changed CPE Configuration Record truncated, showing 2048 of 4660 characters.
View Entire Change Record
AND
     OR
          *cpe:2.3:a:apache:tomcat:7.0:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.0:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.0:beta:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.1:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.2:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.2:beta:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.3:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.4:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.4:beta:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.5:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.5:beta:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.6:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.7:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.8:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.9:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.10:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.11:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.12:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.13:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.14:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.15:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.16:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.17:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.18:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.19:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.20:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.21:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.22:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.23:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.24:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.25:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.26:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.27:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.28:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.29:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.30:*:*:*:*:*:*:*
          *cpe:2.3:a:apac
AND
     OR
          *cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:* versions from (including) 7.0.0 up to (including) 7.0.79
     OR
          cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Added CPE Configuration
OR
     *cpe:2.3:a:netapp:7-mode_transition_tool:-:*:*:*:*:*:*:*
     *cpe:2.3:a:netapp:oncommand_balance:-:*:*:*:*:*:*:*
     *cpe:2.3:a:netapp:oncommand_shift:-:*:*:*:*:*:*:*
Added CPE Configuration Record truncated, showing 2048 of 3833 characters.
View Entire Change Record
OR
     *cpe:2.3:a:redhat:enterprise_linux_server_update_services_for_sap_solutions:7.4:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:enterprise_linux_server_update_services_for_sap_solutions:7.6:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:enterprise_linux_server_update_services_for_sap_solutions:7.7:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:jboss_enterprise_web_server:2.0.0:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:jboss_enterprise_web_server:3.0.0:*:*:*:*:*:*:*
     *cpe:2.3:a:redhat:jboss_enterprise_web_server_text-only_advisories:-:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_eus_compute_node:7.4:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_eus_compute_node:7.5:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_eus_compute_node:7.6:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_eus_compute_node:7.7:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:7.0_s390x:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.4_s390x:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.5_s390x:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.6_s390x:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.7_s390x:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian:7.0_ppc64:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.4_ppc64:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.5_ppc64:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.6_ppc64:*:*:*:*:*:*:*
     *cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian
Changed Reference Type
http://breaktoprotect.blogspot.com/2017/09/the-case-of-cve-2017-12615-tomcat-7-put.html No Types Assigned
http://breaktoprotect.blogspot.com/2017/09/the-case-of-cve-2017-12615-tomcat-7-put.html Exploit
Changed Reference Type
http://www.securityfocus.com/bid/100901 Third Party Advisory, VDB Entry
http://www.securityfocus.com/bid/100901 Broken Link, Third Party Advisory, VDB Entry
Changed Reference Type
http://www.securitytracker.com/id/1039392 Third Party Advisory, VDB Entry
http://www.securitytracker.com/id/1039392 Broken Link, Third Party Advisory, VDB Entry
Changed Reference Type
https://access.redhat.com/errata/RHSA-2017:3080 No Types Assigned
https://access.redhat.com/errata/RHSA-2017:3080 Third Party Advisory
Changed Reference Type
https://access.redhat.com/errata/RHSA-2017:3081 No Types Assigned
https://access.redhat.com/errata/RHSA-2017:3081 Third Party Advisory
Changed Reference Type
https://access.redhat.com/errata/RHSA-2017:3113 No Types Assigned
https://access.redhat.com/errata/RHSA-2017:3113 Third Party Advisory
Changed Reference Type
https://access.redhat.com/errata/RHSA-2017:3114 No Types Assigned
https://access.redhat.com/errata/RHSA-2017:3114 Third Party Advisory
Changed Reference Type
https://access.redhat.com/errata/RHSA-2018:0465 No Types Assigned
https://access.redhat.com/errata/RHSA-2018:0465 Third Party Advisory
Changed Reference Type
https://access.redhat.com/errata/RHSA-2018:0466 No Types Assigned
https://access.redhat.com/errata/RHSA-2018:0466 Third Party Advisory
Changed Reference Type
https://github.com/breaktoprotect/CVE-2017-12615 No Types Assigned
https://github.com/breaktoprotect/CVE-2017-12615 Exploit, Third Party Advisory
Changed Reference Type
https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708%40%3Cdev.tomcat.apache.org%3E No Types Assigned
https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708%40%3Cdev.tomcat.apache.org%3E Mailing List, Patch
Changed Reference Type
https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7%40%3Cdev.tomcat.apache.org%3E No Types Assigned
https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7%40%3Cdev.tomcat.apache.org%3E Mailing List, Patch
Changed Reference Type
https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424%40%3Cdev.tomcat.apache.org%3E No Types Assigned
https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424%40%3Cdev.tomcat.apache.org%3E Mailing List, Patch
Changed Reference Type
https://lists.apache.org/thread.html/8fcb1e2d5895413abcf266f011b9918ae03e0b7daceb118ffbf23f8c%40%3Cannounce.tomcat.apache.org%3E No Types Assigned
https://lists.apache.org/thread.html/8fcb1e2d5895413abcf266f011b9918ae03e0b7daceb118ffbf23f8c%40%3Cannounce.tomcat.apache.org%3E Issue Tracking, Mailing List
Changed Reference Type
https://lists.apache.org/thread.html/r6d03e45b81eab03580cf7f8bb51cb3e9a1b10a2cc0c6a2d3cc92ed0c%40%3Cannounce.apache.org%3E No Types Assigned
https://lists.apache.org/thread.html/r6d03e45b81eab03580cf7f8bb51cb3e9a1b10a2cc0c6a2d3cc92ed0c%40%3Cannounce.apache.org%3E Mailing List
Changed Reference Type
https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c%40%3Cdev.tomcat.apache.org%3E No Types Assigned
https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c%40%3Cdev.tomcat.apache.org%3E Mailing List, Patch
Changed Reference Type
https://security.netapp.com/advisory/ntap-20171018-0001/ No Types Assigned
https://security.netapp.com/advisory/ntap-20171018-0001/ Third Party Advisory
Changed Reference Type
https://www.exploit-db.com/exploits/42953/ No Types Assigned
https://www.exploit-db.com/exploits/42953/ Third Party Advisory, VDB Entry
Changed Reference Type
https://www.synology.com/support/security/Synology_SA_17_54_Tomcat No Types Assigned
https://www.synology.com/support/security/Synology_SA_17_54_Tomcat Third Party Advisory

CVE Modified by Apache Software Foundation 5/14/2024 12:19:05 AM

Action Type Old Value New Value

CVE Modified by Apache Software Foundation 11/06/2023 9:38:26 PM

Action Type Old Value New Value
Added Reference
Apache Software Foundation https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708%40%3Cdev.tomcat.apache.org%3E [No types assigned]
Added Reference
Apache Software Foundation https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7%40%3Cdev.tomcat.apache.org%3E [No types assigned]
Added Reference
Apache Software Foundation https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424%40%3Cdev.tomcat.apache.org%3E [No types assigned]
Added Reference
Apache Software Foundation https://lists.apache.org/thread.html/8fcb1e2d5895413abcf266f011b9918ae03e0b7daceb118ffbf23f8c%40%3Cannounce.tomcat.apache.org%3E [No types assigned]
Added Reference
Apache Software Foundation https://lists.apache.org/thread.html/r6d03e45b81eab03580cf7f8bb51cb3e9a1b10a2cc0c6a2d3cc92ed0c%40%3Cannounce.apache.org%3E [No types assigned]
Added Reference
Apache Software Foundation https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c%40%3Cdev.tomcat.apache.org%3E [No types assigned]
Removed Reference
Apache Software Foundation https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708@%3Cdev.tomcat.apache.org%3E
Removed Reference
Apache Software Foundation https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7@%3Cdev.tomcat.apache.org%3E
Removed Reference
Apache Software Foundation https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424@%3Cdev.tomcat.apache.org%3E
Removed Reference
Apache Software Foundation https://lists.apache.org/thread.html/8fcb1e2d5895413abcf266f011b9918ae03e0b7daceb118ffbf23f8c@%3Cannounce.tomcat.apache.org%3E
Removed Reference
Apache Software Foundation https://lists.apache.org/thread.html/r6d03e45b81eab03580cf7f8bb51cb3e9a1b10a2cc0c6a2d3cc92ed0c@%3Cannounce.apache.org%3E
Removed Reference
Apache Software Foundation https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c@%3Cdev.tomcat.apache.org%3E

CVE Modified by Apache Software Foundation 2/13/2020 12:15:26 PM

Action Type Old Value New Value
Added Reference
https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c@%3Cdev.tomcat.apache.org%3E [No Types Assigned]

CVE Modified by Apache Software Foundation 1/31/2020 4:15:09 AM

Action Type Old Value New Value
Added Reference
https://lists.apache.org/thread.html/r6d03e45b81eab03580cf7f8bb51cb3e9a1b10a2cc0c6a2d3cc92ed0c@%3Cannounce.apache.org%3E [No Types Assigned]

CVE Modified by Apache Software Foundation 4/15/2019 12:30:56 PM

Action Type Old Value New Value
Added Reference
https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7@%3Cdev.tomcat.apache.org%3E [No Types Assigned]

CVE Modified by Apache Software Foundation 4/15/2019 8:30:51 AM

Action Type Old Value New Value
Added Reference
https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424@%3Cdev.tomcat.apache.org%3E [No Types Assigned]

CVE Modified by Apache Software Foundation 3/25/2019 7:35:16 AM

Action Type Old Value New Value
Added Reference
https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708@%3Cdev.tomcat.apache.org%3E [No Types Assigned]

CVE Modified by Apache Software Foundation 3/08/2018 9:29:00 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2018:0465 [No Types Assigned]
Added Reference
https://access.redhat.com/errata/RHSA-2018:0466 [No Types Assigned]

CVE Modified by Apache Software Foundation 12/29/2017 9:29:00 PM

Action Type Old Value New Value
Added Reference
https://www.synology.com/support/security/Synology_SA_17_54_Tomcat [No Types Assigned]

CVE Modified by Apache Software Foundation 12/01/2017 9:29:05 PM

Action Type Old Value New Value
Added Reference
https://access.redhat.com/errata/RHSA-2017:3080 [No Types Assigned]
Added Reference
https://access.redhat.com/errata/RHSA-2017:3081 [No Types Assigned]
Added Reference
https://access.redhat.com/errata/RHSA-2017:3113 [No Types Assigned]
Added Reference
https://access.redhat.com/errata/RHSA-2017:3114 [No Types Assigned]

CVE Modified by Apache Software Foundation 11/10/2017 9:29:00 PM

Action Type Old Value New Value
Added Reference
http://breaktoprotect.blogspot.com/2017/09/the-case-of-cve-2017-12615-tomcat-7-put.html [No Types Assigned]
Added Reference
https://github.com/breaktoprotect/CVE-2017-12615 [No Types Assigned]

CVE Modified by Apache Software Foundation 11/09/2017 9:29:17 PM

Action Type Old Value New Value
Added Reference
https://security.netapp.com/advisory/ntap-20171018-0001/ [No Types Assigned]

CVE Modified by Apache Software Foundation 10/04/2017 9:29:05 PM

Action Type Old Value New Value
Added Reference
https://www.exploit-db.com/exploits/42953/ [No Types Assigned]

Initial Analysis by NIST 9/29/2017 12:12:56 PM

Action Type Old Value New Value
Added CVSS V3
AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Added CVSS V2
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Added CWE
CWE-434
Added CPE Configuration Record truncated, showing 2048 of 4660 characters.
View Entire Change Record
AND
     OR
          *cpe:2.3:a:apache:tomcat:7.0:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.0:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.0:beta:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.1:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.2:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.2:beta:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.3:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.4:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.4:beta:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.5:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.5:beta:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.6:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.7:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.8:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.9:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.10:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.11:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.12:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.13:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.14:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.15:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.16:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.17:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.18:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.19:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.20:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.21:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.22:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.23:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.24:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.25:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.26:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.27:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.28:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.29:*:*:*:*:*:*:*
          *cpe:2.3:a:apache:tomcat:7.0.30:*:*:*:*:*:*:*
          *cpe:2.3:a:apac
Changed Reference Type
http://www.securityfocus.com/bid/100901 No Types Assigned
http://www.securityfocus.com/bid/100901 Third Party Advisory, VDB Entry
Changed Reference Type
http://www.securitytracker.com/id/1039392 No Types Assigned
http://www.securitytracker.com/id/1039392 Third Party Advisory, VDB Entry
Changed Reference Type
https://lists.apache.org/thread.html/8fcb1e2d5895413abcf266f011b9918ae03e0b7daceb118ffbf23f8c@%3Cannounce.tomcat.apache.org%3E No Types Assigned
https://lists.apache.org/thread.html/8fcb1e2d5895413abcf266f011b9918ae03e0b7daceb118ffbf23f8c@%3Cannounce.tomcat.apache.org%3E Issue Tracking, Mailing List, Vendor Advisory

CVE Modified by Apache Software Foundation 9/21/2017 9:29:24 PM

Action Type Old Value New Value
Added Reference
http://www.securityfocus.com/bid/100901 [No Types Assigned]
Added Reference
http://www.securitytracker.com/id/1039392 [No Types Assigned]