Your review has been sent successfully

Apache Updates

2402
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

1 March, 2020

● High

2020-977

All

Description:

Apache has released security update to address multiple vulnerabilities in the following products:

  • Apache Tomcat 9.0.0.M1 to 9.0.30
  • Apache Tomcat 8.5.0 to 8.5.50
  • Apache Tomcat 7.0.0 to 7.0.99

Threats:

Attacker could exploit these vulnerabilities by doing the following:

  • Bypass of a protection mechanism
  • Authentication bypass
  • Execute arbitrary code

Best practice and Recommendations:

The CERT team encourages users to update the affected products and check more details by following the link below:

Last updated at 1 March, 2020

Rate the content

rate-icon
up icon