Apache Tomcat < 7.0.79 - Unrestricted File Upload
Title source: ruleDescription
When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via setting the readonly initialisation parameter of the Default to false) it was possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be executed by the server.
Exploits (21)
nomisec
WORKING POC
284 stars
by lizhianyuguangming · remote
https://github.com/lizhianyuguangming/TomcatScanPro
nomisec
WORKING POC
111 stars
by breaktoprotect · remote
https://github.com/breaktoprotect/CVE-2017-12615
nomisec
WORKING POC
5 stars
by zi0Black · remote
https://github.com/zi0Black/POC-CVE-2017-12615-or-CVE-2017-12717
github
WORKING POC
1 stars
by vaishakhcv · perlpoc
https://github.com/vaishakhcv/CVE-exploits/tree/master/CVE-2017-12615_12617
github
WORKING POC
by winterwolf32 · perlpoc
https://github.com/winterwolf32/CVE_Exploits-/tree/master/CVE-2017-12615_12617
Nuclei Templates (1)
Apache Tomcat Servers - Remote Code Execution
HIGHby pikpikcu
Shodan:
title:"Apache Tomcat" || http.title:"apache tomcat" || http.html:"apache tomcat" || cpe:"cpe:2.3:a:apache:tomcat"
FOFA:
body="apache tomcat" || title="apache tomcat"
References (20)
Scores
CVSS v3
8.1
EPSS
0.9420
EPSS Percentile
99.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Lab Environment
Details
CISA KEV
2022-03-25
VulnCheck KEV
2019-01-08
InTheWild.io
2020-03-17
ENISA EUVD
EUVD-2018-0654
Ransomware Use
Confirmed
CWE
CWE-434
Status
published
Products (50)
apache/tomcat
7.0.0 - 7.0.79
Apache Software Foundation/Apache Tomcat
7.0.0 to 7.0.79
netapp/7-mode_transition_tool
netapp/oncommand_balance
netapp/oncommand_shift
org.apache.tomcat.embed/tomcat-embed-core
7.0.0 - 7.0.79Maven
redhat/enterprise_linux_desktop
6.0
redhat/enterprise_linux_desktop
7.0
redhat/enterprise_linux_eus
7.4
redhat/enterprise_linux_eus
7.5
... and 40 more
Published
Sep 19, 2017
KEV Added
Mar 25, 2022
Tracked Since
Feb 18, 2026