Description
Jakarta Tomcat before 3.3.1a on certain Windows systems may allow remote attackers to cause a denial of service (thread hang and resource consumption) via a request for a JSP page containing an MS-DOS device name, such as aux.jsp.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Support Plus Responsive Ticket System Security Bypass (7.1.4)
TYPO3 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2009-3633)
Oracle JRE CVE-2012-5072 Vulnerability (CVE-2012-5072)
Chamilo Server-Side Request Forgery (SSRF) Vulnerability (CVE-2023-34959)
WordPress Plugin Monarch Social Sharing Security Bypass (1.2.6)