Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Apache Tomcat 5.5.0 and 4.1.0 through 4.1.31 allows remote attackers to bypass an IP address restriction and obtain sensitive information via a request that is processed concurrently with another request but in a different thread, leading to an instance-variable overwrite associated with a "synchronization problem" and lack of thread safety, and related to RemoteFilterValve, RemoteAddrValve, and RemoteHostValve.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Tomcat RemoteFilterValve 绕过安全限制漏洞
Vulnerability Description
Apache Tomcat是一个流行的开放源码的JSP应用服务器程序。 Apache Tomcat在检查IP地址时存在同步问题,在极少的环境下,可能允许非允许的IP地址绕过RemoteFilterValve过滤器值并访问受保护的内容。仅在使用调试器在两个线程之间强制特定的处理序列的情况下才可以利用这个漏洞。
CVSS Information
N/A
Vulnerability Type
N/A