Metrics
Affected Vendors & Products
Fri, 08 Aug 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Uncontrolled Resource Consumption vulnerability in the examples web application provided with Apache Tomcat leads to denial of service. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.9.97. Older, EOL versions may also be affected. Users are recommended to upgrade to version 11.0.2, 10.1.34 or 9.0.98, which fixes the issue. | Uncontrolled Resource Consumption vulnerability in the examples web application provided with Apache Tomcat leads to denial of service. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.9.97. The following versions were EOL at the time the CVE was created but are known to be affected: 8.5.0 though 8.5.100. Other, older, EOL versions may also be affected. Users are recommended to upgrade to version 11.0.2, 10.1.34 or 9.0.98, which fixes the issue. |
Thu, 07 Aug 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Uncontrolled Resource Consumption vulnerability in the examples web application provided with Apache Tomcat leads to denial of service. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.9.97. Users are recommended to upgrade to version 11.0.2, 10.1.34 or 9.0.98, which fixes the issue. | Uncontrolled Resource Consumption vulnerability in the examples web application provided with Apache Tomcat leads to denial of service. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.9.97. Older, EOL versions may also be affected. Users are recommended to upgrade to version 11.0.2, 10.1.34 or 9.0.98, which fixes the issue. |
Wed, 16 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Sun, 13 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Tue, 01 Jul 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apache
Apache tomcat Netapp Netapp bootstrap Os Netapp hci Compute Node |
|
CPEs | cpe:2.3:a:apache:tomcat:*:*:*:*:*:*:*:* cpe:2.3:h:netapp:hci_compute_node:-:*:*:*:*:*:*:* cpe:2.3:o:netapp:bootstrap_os:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Apache
Apache tomcat Netapp Netapp bootstrap Os Netapp hci Compute Node |
Wed, 14 May 2025 02:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Redhat
Redhat enterprise Linux |
|
CPEs | cpe:/o:redhat:enterprise_linux:10.0 | |
Vendors & Products |
Redhat
Redhat enterprise Linux |
Wed, 23 Apr 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:/a:redhat:jboss_enterprise_web_server:6.1::el8 cpe:/a:redhat:jboss_enterprise_web_server:6.1::el9 |
|
Vendors & Products |
Redhat
Redhat jboss Enterprise Web Server |
Tue, 08 Apr 2025 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Redhat
Redhat jboss Enterprise Web Server |
|
CPEs | cpe:/a:redhat:jboss_enterprise_web_server:6.1 cpe:/a:redhat:jboss_enterprise_web_server:6.1::el8 cpe:/a:redhat:jboss_enterprise_web_server:6.1::el9 |
|
Vendors & Products |
Redhat
Redhat jboss Enterprise Web Server |
Fri, 31 Jan 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Wed, 18 Dec 2024 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Wed, 18 Dec 2024 02:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Tue, 17 Dec 2024 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 17 Dec 2024 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 17 Dec 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Tue, 17 Dec 2024 12:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Uncontrolled Resource Consumption vulnerability in the examples web application provided with Apache Tomcat leads to denial of service. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 through 9.9.97. Users are recommended to upgrade to version 11.0.2, 10.1.34 or 9.0.98, which fixes the issue. | |
Title | Apache Tomcat: DoS in examples web application | |
Weaknesses | CWE-400 | |
References |
|

Status: PUBLISHED
Assigner: apache
Published:
Updated: 2025-08-08T11:22:57.924Z
Reserved: 2024-12-05T07:31:33.851Z
Link: CVE-2024-54677

Updated: 2025-01-31T15:02:50.435Z

Status : Modified
Published: 2024-12-17T13:15:18.957
Modified: 2025-08-08T12:15:27.170
Link: CVE-2024-54677
