Severity
7.0HIGH
EPSS
0.4%
top 42.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 23
Latest updateJan 27

Description

When Apache Tomcat 9.0.0.M1 to 9.0.28, 8.5.0 to 8.5.47, 7.0.0 and 7.0.97 is configured with the JMX Remote Lifecycle Listener, a local attacker without access to the Tomcat process or configuration files is able to manipulate the RMI registry to perform a man-in-the-middle attack to capture user names and passwords used to access the JMX interface. The attacker can then use these credentials to access the JMX interface and gain complete control over the Tomcat instance.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages8 packages

NVDapache/tomcat7.0.07.0.97+2
CVEListV5apache_software_foundation/apache_tomcat7.0.0 to 7.0.97, 8.5.0 to 8.5.47, 9.0.0.M1 to 9.0.28+2
Debiantomcat9< 9.0.31-1+3
Ubuntutomcat8< 8.0.32-1ubuntu1.11

Also affects: Debian Linux 10.0, 8.0, 9.0, Ubuntu Linux 16.04

Patches

🔴Vulnerability Details

5
OSV
tomcat8 vulnerabilities2020-01-27
GHSA
Insufficiently Protected Credentials in Apache Tomcat2019-12-26
OSV
Insufficiently Protected Credentials in Apache Tomcat2019-12-26
CVEList
CVE-2019-12418: When Apache Tomcat 92019-12-23
OSV
CVE-2019-12418: When Apache Tomcat 92019-12-23

📋Vendor Advisories

4
Ubuntu
Tomcat vulnerabilities2020-01-27
Red Hat
tomcat: local privilege escalation2019-11-21
Debian
CVE-2019-12418: tomcat9 - When Apache Tomcat 9.0.0.M1 to 9.0.28, 8.5.0 to 8.5.47, 7.0.0 and 7.0.97 is conf...2019
Apache
Apache tomcat: CVE-2019-12418

💬Community

3
Bugzilla
CVE-2019-12418 tomcat: local privilege escalation [epel-all]2019-12-20
Bugzilla
CVE-2019-12418 tomcat: local privilege escalation2019-12-20
Bugzilla
CVE-2019-12418 tomcat: local privilege escalation [fedora-all]2019-12-20