CVE-2016-1240

Advisory lineage Upstream: 0 Downstream: 9
Modified
Published: 03 Oct 2016, 00:00
Last modified:05 Aug 2024, 22:48

Vulnerability Summary

Overall Risk (default)
medium
46/100
CVSS Score
7.8 HIGH
v3.0 (nvd)
EPSS Score
22.22% HIGH
22% probability +3.60%
KEV
Not listed
Ransomware
No reports
Public exploits
2 found
Dark Web
Not detected

Timeline

03 Oct 2016, 00:00
Published
Vulnerability first disclosed
05 Aug 2024, 22:48
Last Modified
Vulnerability information updated

Description

The Tomcat init script in the tomcat7 package before 7.0.56-3+deb8u4 and tomcat8 package before 8.0.14-1+deb8u3 on Debian jessie and the tomcat6 and libtomcat6-java packages before 6.0.35-1ubuntu3.8 on Ubuntu 12.04 LTS, the tomcat7 and libtomcat7-java packages before 7.0.52-1ubuntu0.7 on Ubuntu 14.04 LTS, and tomcat8 and libtomcat8-java packages before 8.0.32-1ubuntu1.2 on Ubuntu 16.04 LTS allows local users with access to the tomcat account to gain root privileges via a symlink attack on the Catalina log file, as demonstrated by /var/log/tomcat7/catalina.out.

CVSS Metrics

  • v3.0HIGHScore: 7.8CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
  • v2.0HIGHScore: 7.2AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS Trends

Current EPSS score: 22.22% Percentile: 96%

Techniques & Countermeasures

  • CWE-20Improper Input Validation

    The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

Affected Systems

  • UnknownTomcat

    6.0 | 7.0 | 8.0

References (14)