Vulnerability Name: | CVE-2008-0128 (CCN-39804) |
Assigned: | 2008-01-22 |
Published: | 2008-01-22 |
Updated: | 2019-03-25 |
Summary: | The SingleSignOn Valve (org.apache.catalina.authenticator.SingleSignOn) in Apache Tomcat before 5.5.21 does not set the secure flag for the JSESSIONIDSSO cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.
|
CVSS v3 Severity: | 4.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)Exploitability Metrics: | Attack Vector (AV): Adjacent Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): None | Scope: | Scope (S): Unchanged
| Impact Metrics: | Confidentiality (C): Low Integrity (I): None Availibility (A): None |
|
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Authentication (Au): None | Impact Metrics: | Confidentiality (C): Partial Integrity (I): None Availibility (A): None | 3.3 Low (CCN CVSS v2 Vector: AV:A/AC:L/Au:N/C:P/I:N/A:N) 2.4 Low (CCN Temporal CVSS v2 Vector: AV:A/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Adjacent_Network Access Complexity (AC): Low Athentication (Au): None
| Impact Metrics: | Confidentiality (C): Partial Integrity (I): None Availibility (A): None |
|
Vulnerability Type: | CWE-16
|
Vulnerability Consequences: | Obtain Information |
References: | Source: CONFIRM Type: UNKNOWN http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx
Source: CCN Type: CA Security Response Blog, Jan 23 2009, 06:04 PM CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities
Source: MITRE Type: CNA CVE-2008-0128
Source: CCN Type: ASF Bugzilla Bug 41217 SingleSignOn Cookie does not honor https access: Login Information Disclosure
Source: CONFIRM Type: Patch http://issues.apache.org/bugzilla/show_bug.cgi?id=41217
Source: SUSE Type: UNKNOWN SUSE-SR:2008:005
Source: CCN Type: RHSA-2008-0261 Moderate: Red Hat Network Satellite Server security update
Source: CCN Type: RHSA-2008-0524 Low: Red Hat Network Satellite Server security update
Source: CCN Type: RHSA-2008-0630 Low: Red Hat Network Satellite Server security update
Source: REDHAT Type: UNKNOWN RHSA-2008:0630
Source: CCN Type: RHSA-2010-0602 Moderate: Red Hat Certificate System 7.3 security update
Source: SECUNIA Type: Vendor Advisory 28549
Source: CCN Type: SA28552 Apache Tomcat SingleSignOn Information Disclosure
Source: SECUNIA Type: Vendor Advisory 28552
Source: SECUNIA Type: UNKNOWN 29242
Source: SECUNIA Type: UNKNOWN 31493
Source: CCN Type: SA33668 CA Cohesion Application Configuration Manager Apache Tomcat Multiple Vulnerabilities
Source: SECUNIA Type: UNKNOWN 33668
Source: CCN Type: SA40425 Novell ZENworks Linux Management Tomcat Multiple Vulnerabilities
Source: CONFIRM Type: UNKNOWN http://security-tracker.debian.net/tracker/CVE-2008-0128
Source: CONFIRM Type: UNKNOWN http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197540
Source: CCN Type: Apache Tomcat Web site Apache Tomcat
Source: DEBIAN Type: UNKNOWN DSA-1468
Source: DEBIAN Type: DSA-1468 tomcat5.5 -- several vulnerabilities
Source: CCN Type: Novell Document ID: 7006398 Tomcat 5.0.28 in ZLM 7.3 subject to "Multiple Vendor Multiple HTTP Request Smuggling Vulnerabilities"
Source: REDHAT Type: UNKNOWN RHSA-2008:0261
Source: BUGTRAQ Type: UNKNOWN 20090124 CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities
Source: BUGTRAQ Type: UNKNOWN 20090127 CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities (Updated - v1.1)
Source: BID Type: UNKNOWN 27365
Source: CCN Type: BID-27365 Apache Tomcat SingleSignOn Remote Information Disclosure Vulnerability
Source: VUPEN Type: UNKNOWN ADV-2008-0192
Source: VUPEN Type: UNKNOWN ADV-2009-0233
Source: XF Type: UNKNOWN apache-singlesignon-information-disclosure(39804)
Source: XF Type: UNKNOWN apache-singlesignon-information-disclosure(39804)
Source: MLIST Type: UNKNOWN [tomcat-dev] 20190319 svn commit: r1855831 [21/30] - in /tomcat/site/trunk: ./ docs/ xdocs/
Source: MLIST Type: UNKNOWN [tomcat-dev] 20190325 svn commit: r1856174 [19/29] - in /tomcat/site/trunk: docs/ xdocs/ xdocs/stylesheets/
Source: MLIST Type: UNKNOWN [tomcat-dev] 20200213 svn commit: r1873980 [24/34] - /tomcat/site/trunk/docs/
Source: CCN Type: CA20090123-01 Security Notice for Cohesion Tomcat
Source: CCN Type: IBM Security Bulletin 6858013 (Tivoli Application Dependency Discovery Manager) TADDM affected by multiple vulnerabilities due to Apache Tomcat libraries
Source: SUSE Type: SUSE-SR:2008:005 SUSE Security Summary Report
|
Vulnerable Configuration: | Configuration 1: cpe:/a:apache:tomcat:*:*:*:*:*:*:*:* (Version <= 5.5.20) Configuration CCN 1: cpe:/a:apache:tomcat:5.5.4:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.12:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.9:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.7:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.20:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.17:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.0:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.1:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.10:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.11:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.13:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.14:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.15:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.16:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.18:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.19:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.2:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.3:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.5:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.6:*:*:*:*:*:*:*OR cpe:/a:apache:tomcat:5.5.8:*:*:*:*:*:*:*OR cpe:/a:redhat:certificate_system:7.3:*:*:*:*:*:*:*AND cpe:/o:debian:debian_linux:4.0:*:*:*:*:*:*:*OR cpe:/a:redhat:network_satellite:5.0:*:*:*:*:*:*:*OR cpe:/a:redhat:network_satellite:4.2:*:*:*:*:*:*:*OR cpe:/a:ibm:tivoli_application_dependency_discovery_manager:7.3.0.0:*:*:*:*:*:*:*
Denotes that component is vulnerable |
Oval Definitions |
|
BACK |