New Apache Tomcat Vulnerabilities Let Attackers Execute Remote Code
ID: 45680330-6378-532a-ae6a-9159e8016803
STIX ID: report--45680330-6378-532a-ae6a-9159e8016803
Feed Name: cybersecurityNews.com
Threat Score
**Executive Summary:** Two security flaws were disclosed in Apache Tomcat: an Important-rated race condition (CVE-2024-50379) that can allow remote code execution when specific configuration and filesystem conditions are met, and a Low-rated vulnerability (CVE-2024-54677) in bundled example applications that can trigger an OutOfMemoryError and denial of service; Tomcat maintainers have released patches and advise immediate upgrades to the specified patched versions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
