Oracle / Workload Manager
10 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-17527 | Apache Tomcat: Request header mix-up between HTTP/2 streams | HIGH | 7.5 | Dec 3, 2020 |
| CVE-2020-13935 | tomcat: multiple requests with invalid payload length in a WebSocket frame could lead to DoS | HIGH | 7.5 | Jul 14, 2020 |
| CVE-2020-13934 | tomcat: OutOfMemoryException caused by HTTP/2 connection leak could lead to DoS | HIGH | 7.5 | Jul 14, 2020 |
| CVE-2020-11996 | tomcat: specially crafted sequence of HTTP/2 requests can lead to DoS | HIGH | 7.5 | Jun 26, 2020 |
| CVE-2020-9484 | tomcat: deserialization flaw in session persistence storage leading to RCE | HIGH | 7.0 | May 20, 2020 |
| CVE-2020-1938 KEV | tomcat: Apache Tomcat AJP File Read/Inclusion Vulnerability | CRITICAL | 9.8 | Feb 24, 2020 |
| CVE-2020-1935 | tomcat: Mishandling of Transfer-Encoding header allows for HTTP request smuggling | MEDIUM | 4.8 | Feb 24, 2020 |
| CVE-2019-17569 | tomcat: Regression in handling of Transfer-Encoding header allows for HTTP request smuggling | MEDIUM | 4.8 | Feb 24, 2020 |
| CVE-2019-12418 | tomcat: local privilege escalation | HIGH | 7.4 | Dec 23, 2019 |
| CVE-2017-12617 KEV | tomcat: Remote Code Execution bypass for CVE-2017-12615 | HIGH | 8.1 | Oct 3, 2017 |
Showing 1 to 10 of 10 CVEs