mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 23:27:33 +02:00
18 lines
795 B
Markdown
18 lines
795 B
Markdown
### [CVE-2011-3190](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3190)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Certain AJP protocol connector implementations in Apache Tomcat 7.0.0 through 7.0.20, 6.0.0 through 6.0.33, 5.5.0 through 5.5.33, and possibly other versions allow remote attackers to spoof AJP requests, bypass authentication, and obtain sensitive information by causing the connector to interpret a request body as a new request.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://securityreason.com/securityalert/8362
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|