Apache Tomcat Denial of Service Vulnerability

Apache Tomcat Denial of Service Vulnerability

CVE-2011-4858 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:N/A:P

Apache Tomcat before 5.5.35, 6.x before 6.0.35, and 7.x before 7.0.23 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters.

Learn more about our Cis Benchmark Audit For Apache Tomcat.