Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-3164

EPSS 3.39% · P88
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-3164

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The AJP connector in Apache Tomcat 4.0.1 through 4.0.6 and 4.1.0 through 4.1.36, as used in Hitachi Cosminexus Application Server and standalone, does not properly handle when a connection is broken before request body data is sent in a POST request, which can lead to an information leak when "unsuitable request body data" is used for a different request, possibly related to Java Servlet pages.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Hitachi Cosminexus 远程信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Hitachi Cosminexus Application Server 是针对多个平台的应用程序服务器。 Hitachi Cosminexus Application Server在POST请求中发送请求正文数据之前连接损坏时不能进行正确处理,这会在unsuitable request body data用于不同的请求时导致信息泄露,可能与Java Servlet页和Apache Tomcat有关。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-3164

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-3164

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-10-06 · 21 CVEs total

CVE-2005-3168Micorsoft windows 2000 Sp4 累积更新包 安全模板设置漏洞
CVE-2005-3177Micorsoft windows CHKDSK 累积更新包 安全描述符处理漏洞
CVE-2005-3176Micorsoft windows 2000 Sp4 累积更新包 IP地址检测漏洞
CVE-2005-3175Micorsoft windows 2000 Sp4 累积更新包 域权限绕过漏洞
CVE-2005-3174Micorsoft windows 2000 Sp4 累积更新包 安全合格域名密码验证漏洞
CVE-2005-3173Micorsoft windows 2000 Sp4 累积更新包 域控制器绕过漏洞
CVE-2005-3172Micorsoft windows 2000 Sp4 累积更新包 字符处理溢出漏洞
CVE-2005-3171Micorsoft windows 2000 Sp4 累积更新包 组策略安全设置漏洞
CVE-2005-3170Micorsoft windows 2000 Sp4 累积更新包 证书授权欺骗漏洞
CVE-2005-3169Micorsoft windows 2000 Sp4 累积更新包 授权检测漏洞
CVE-2005-3118Debian Linux Mason Init.d防火墙加载失败漏洞
CVE-2005-3167MediaWiki HTML Inline Style Attributes未明跨站脚本攻击漏洞
CVE-2005-3166MediaWiki 'edit submission handling'拒绝服务漏洞
CVE-2005-3165MediaWiki 跨站脚本漏洞
CVE-2005-3163Polipo Web根目录限制绕过漏洞
CVE-2005-3161PHP-Fusion Register.PHP和FAQ.PHP SQL注入漏洞
CVE-2005-3160PHP-Fusion 'photogallery.php'SQL注入漏洞
CVE-2005-3159PHP-Fusion Messages.PHP SQL 注入漏洞
CVE-2005-3158PHP-Fusion 'messages.php'SQL注入漏洞
CVE-2005-3157PHP-Fusion 'message.php'SQL注入漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2005-3164

No comments yet


Leave a comment