Language:
https://www.securityfocus.com/archive/1/504125
http://tomcat.apache.org/security-4.html#Fixed_in_Apache_Tomcat_4.1.40
http://tomcat.apache.org/security-5.html#Fixed_in_Apache_Tomcat_5.5.28
http://tomcat.apache.org/security-6.html#Fixed_in_Apache_Tomcat_6.0.20
Severity: Medium
ID: 46753
File Name: tomcat_form_user_enum.nasl
Version: 1.27
Type: combined
Agent: windows, macosx, unix
Family: Web Servers
Published: 5/28/2010
Updated: 5/6/2024
Configuration: Enable thorough checks
Supported Sensors: Nessus Agent, Nessus
Risk Factor: Medium
Score: 6.2
Risk Factor: Medium
Base Score: 4.3
Temporal Score: 3.6
Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N
CVSS Score Source: CVE-2009-0580
Risk Factor: Medium
Base Score: 5.3
Temporal Score: 4.9
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C
CPE: cpe:/a:apache:tomcat:4, cpe:/a:apache:tomcat:5, cpe:/a:apache:tomcat:6
Required KB Items: installed_sw/Apache Tomcat
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 6/3/2009
Vulnerability Publication Date: 6/3/2009
CANVAS (D2ExploitPack)
CVE: CVE-2008-5515, CVE-2009-0033, CVE-2009-0580, CVE-2009-0781, CVE-2009-0783