Back to the CVE list
CVE-2016-8735 CISA KEV · Actively exploited

Vulnerability in Apache Tomcat

CVSS score

9.8

EPSS probability

%90.3

Risk score

17.7

Published

9 y ago

A patch is available only for some products or versions

Kanıt listesindeki ürün ve sürüm eşleşmesini kontrol edin; bazı varyantlar hâlâ etkileniyor olabilir.

Impact on My Inventory

Only the personal products you have added to your account are assessed; an organisation's inventory does not appear here.

Checking session…

Vulnerability description

DayBreach CVE AI Research

CVE-2016-8735 has vendor, distribution, patch and security-source records on file. We can compare them and prepare an explanation linked to the evidence.

Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, and 9.x before 9.0.0.M12 if JmxRemoteLifecycleListener is used and an attacker can reach JMX ports. The issue exists because this listener wasn't updated for consistency with the CVE-2016-3427 Oracle patch that affected credential types.

IMPACT: Affected Products and Software

Affected Products

The following products are affected by CVE-2016-8735 vulnerability. Where our threat engine knows the exact affected versions, they are listed below.

IDVENDORPRODUCTACTION
1apachetomcat View
2apachetomcat View
3apachetomcat View
4apachetomcat View
5apachetomcat View
6canonicalubuntu linux View
7netapp7-mode transition tool View
8netapponcommand insight View
9netapponcommand shift View
10netappsnap creator framework View
11debiandebian linux View
12redhatjboss enterprise web server View
13oracleagile engineering data management View
14oracleagile engineering data management View
15oracleagile engineering data management View
16oracleagile product lifecycle management View
17oracleagile product lifecycle management View
18oraclecommunications application session controller View
19oraclecommunications application session controller View
20oraclecommunications instant messaging server View
21oraclecommunications interactive session recorder View
22oraclecommunications interactive session recorder View
23oraclecommunications interactive session recorder View
24oraclehospitality guest access View
25oraclehospitality guest access View
26oraclemicros relate crm software View
27oraclemicros relate crm software View
28oraclemicros retail xbri loss prevention View
29oraclemicros retail xbri loss prevention View
30oraclemicros retail xbri loss prevention View
31oraclemicros retail xbri loss prevention View
32oraclemicros retail xbri loss prevention View
33oraclemicros retail xbri loss prevention View
34oraclemysql enterprise monitor View
35oraclemysql enterprise monitor View
36oraclemysql enterprise monitor View
37oracleretail convenience and fuel pos software View
38oracletransportation management View
39oracletransportation management View
40oracletransportation management View
41oracletransportation management View
42oracletransportation management View
43oracletransportation management View
44oracletransportation management View
45oracletransportation management View
46Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6 View
47Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-admin-webapps View
48Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-docs-webapp View
49Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-el-1.0-api View
50Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-el-2.1-api View
51Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-javadoc View
52Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-jsp-2.1-api View
53Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-lib View
54Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-log4j View
55Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-maven-devel View
56Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-servlet-2.5-api View
57Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6-webapps View
58Red Hatred_hat_jboss_enterprise_web_server_2:tomcat6.src View
59Red Hatred_hat_jboss_enterprise_web_server_2:tomcat7 View
60Red Hatred_hat_jboss_web_server_3:tomcat7 View
61Red Hatred_hat_jboss_web_server_3:tomcat8 View
62Red Hat6Server-JWS-3.1:hibernate4-c3p0-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el6.noarch View
63Red Hat6Server-JWS-3.1:hibernate4-core-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el6.noarch View
64Red Hat6Server-JWS-3.1:hibernate4-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el6.noarch View
65Red Hat6Server-JWS-3.1:hibernate4-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el6.src View
66Red Hat6Server-JWS-3.1:hibernate4-entitymanager-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el6.noarch View
67Red Hat6Server-JWS-3.1:hibernate4-envers-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el6.noarch View
68Red Hat6Server-JWS-3.1:jbcs-httpd24-apache-commons-daemon-0:1.0.15-1.redhat_2.1.jbcs.el6.noarch View
69Red Hat6Server-JWS-3.1:jbcs-httpd24-apache-commons-daemon-jsvc-1:1.0.15-17.redhat_2.jbcs.el6.i686 View
70Red Hat6Server-JWS-3.1:jbcs-httpd24-apache-commons-daemon-jsvc-debuginfo-1:1.0.15-17.redhat_2.jbcs.el6.i686 View
71Red Hat6Server-JWS-3.1:jbcs-httpd24-runtime-0:1-3.jbcs.el6.noarch View
72Red Hat6Server-JWS-3.1:mod_cluster-0:1.3.5-2.Final_redhat_2.1.ep7.el6.noarch View
73Red Hat6Server-JWS-3.1:mod_cluster-0:1.3.5-2.Final_redhat_2.1.ep7.el6.src View
74Red Hat6Server-JWS-3.1:mod_cluster-tomcat7-0:1.3.5-2.Final_redhat_2.1.ep7.el6.noarch View
75Red Hat6Server-JWS-3.1:mod_cluster-tomcat8-0:1.3.5-2.Final_redhat_2.1.ep7.el6.noarch View
76Red Hat6Server-JWS-3.1:tomcat-native-0:1.2.8-9.redhat_9.ep7.el6.i686 View
77Red Hat6Server-JWS-3.1:tomcat-native-0:1.2.8-9.redhat_9.ep7.el6.src View
78Red Hat6Server-JWS-3.1:tomcat-native-0:1.2.8-9.redhat_9.ep7.el6.x86_64 View
79Red Hat6Server-JWS-3.1:tomcat-native-debuginfo-0:1.2.8-9.redhat_9.ep7.el6.i686 View
80Red Hat6Server-JWS-3.1:tomcat-native-debuginfo-0:1.2.8-9.redhat_9.ep7.el6.x86_64 View
81Red Hat6Server-JWS-3.1:tomcat-vault-0:1.0.8-9.Final_redhat_2.1.ep7.el6.noarch View
82Red Hat6Server-JWS-3.1:tomcat-vault-0:1.0.8-9.Final_redhat_2.1.ep7.el6.src View
83Red Hat6Server-JWS-3.1:tomcat7-0:7.0.70-16.ep7.el6.noarch View
84Red Hat6Server-JWS-3.1:tomcat7-0:7.0.70-16.ep7.el6.src View
85Red Hat6Server-JWS-3.1:tomcat7-admin-webapps-0:7.0.70-16.ep7.el6.noarch View
86Red Hat6Server-JWS-3.1:tomcat7-docs-webapp-0:7.0.70-16.ep7.el6.noarch View
87Red Hat6Server-JWS-3.1:tomcat7-el-2.2-api-0:7.0.70-16.ep7.el6.noarch View
88Red Hat6Server-JWS-3.1:tomcat7-javadoc-0:7.0.70-16.ep7.el6.noarch View
89Red Hat6Server-JWS-3.1:tomcat7-jsp-2.2-api-0:7.0.70-16.ep7.el6.noarch View
90Red Hat6Server-JWS-3.1:tomcat7-jsvc-0:7.0.70-16.ep7.el6.noarch View
91Red Hat6Server-JWS-3.1:tomcat7-lib-0:7.0.70-16.ep7.el6.noarch View
92Red Hat6Server-JWS-3.1:tomcat7-log4j-0:7.0.70-16.ep7.el6.noarch View
93Red Hat6Server-JWS-3.1:tomcat7-selinux-0:7.0.70-16.ep7.el6.noarch View
94Red Hat6Server-JWS-3.1:tomcat7-servlet-3.0-api-0:7.0.70-16.ep7.el6.noarch View
95Red Hat6Server-JWS-3.1:tomcat7-webapps-0:7.0.70-16.ep7.el6.noarch View
96Red Hat6Server-JWS-3.1:tomcat8-0:8.0.36-17.ep7.el6.noarch View
97Red Hat6Server-JWS-3.1:tomcat8-0:8.0.36-17.ep7.el6.src View
98Red Hat6Server-JWS-3.1:tomcat8-admin-webapps-0:8.0.36-17.ep7.el6.noarch View
99Red Hat6Server-JWS-3.1:tomcat8-docs-webapp-0:8.0.36-17.ep7.el6.noarch View
100Red Hat6Server-JWS-3.1:tomcat8-el-2.2-api-0:8.0.36-17.ep7.el6.noarch View
101Red Hat6Server-JWS-3.1:tomcat8-javadoc-0:8.0.36-17.ep7.el6.noarch View
102Red Hat6Server-JWS-3.1:tomcat8-jsp-2.3-api-0:8.0.36-17.ep7.el6.noarch View
103Red Hat6Server-JWS-3.1:tomcat8-jsvc-0:8.0.36-17.ep7.el6.noarch View
104Red Hat6Server-JWS-3.1:tomcat8-lib-0:8.0.36-17.ep7.el6.noarch View
105Red Hat6Server-JWS-3.1:tomcat8-log4j-0:8.0.36-17.ep7.el6.noarch View
106Red Hat6Server-JWS-3.1:tomcat8-selinux-0:8.0.36-17.ep7.el6.noarch View
107Red Hat6Server-JWS-3.1:tomcat8-servlet-3.1-api-0:8.0.36-17.ep7.el6.noarch View
108Red Hat6Server-JWS-3.1:tomcat8-webapps-0:8.0.36-17.ep7.el6.noarch View
109Red Hat7Server-JWS-3.1:hibernate4-c3p0-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el7.noarch View
110Red Hat7Server-JWS-3.1:hibernate4-core-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el7.noarch View
111Red Hat7Server-JWS-3.1:hibernate4-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el7.noarch View
112Red Hat7Server-JWS-3.1:hibernate4-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el7.src View
113Red Hat7Server-JWS-3.1:hibernate4-entitymanager-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el7.noarch View
114Red Hat7Server-JWS-3.1:hibernate4-envers-eap6-0:4.2.23-1.Final_redhat_1.1.ep6.el7.noarch View
115Red Hat7Server-JWS-3.1:jbcs-httpd24-apache-commons-daemon-0:1.0.15-1.redhat_2.1.jbcs.el7.noarch View
116Red Hat7Server-JWS-3.1:jbcs-httpd24-apache-commons-daemon-jsvc-1:1.0.15-17.redhat_2.jbcs.el7.src View
117Red Hat7Server-JWS-3.1:jbcs-httpd24-apache-commons-daemon-jsvc-debuginfo-1:1.0.15-17.redhat_2.jbcs.el7.x86_64 View
118Red Hat7Server-JWS-3.1:jbcs-httpd24-runtime-0:1-3.jbcs.el7.noarch View
119Red Hat7Server-JWS-3.1:mod_cluster-0:1.3.5-2.Final_redhat_2.1.ep7.el7.noarch View
120Red Hat7Server-JWS-3.1:mod_cluster-0:1.3.5-2.Final_redhat_2.1.ep7.el7.src View
121Red Hat7Server-JWS-3.1:mod_cluster-tomcat7-0:1.3.5-2.Final_redhat_2.1.ep7.el7.noarch View
122Red Hat7Server-JWS-3.1:mod_cluster-tomcat8-0:1.3.5-2.Final_redhat_2.1.ep7.el7.noarch View
123Red Hat7Server-JWS-3.1:tomcat-native-0:1.2.8-9.redhat_9.ep7.el7.src View
124Red Hat7Server-JWS-3.1:tomcat-native-0:1.2.8-9.redhat_9.ep7.el7.x86_64 View
125Red Hat7Server-JWS-3.1:tomcat-native-debuginfo-0:1.2.8-9.redhat_9.ep7.el7.x86_64 View
126Red Hat7Server-JWS-3.1:tomcat-vault-0:1.0.8-9.Final_redhat_2.1.ep7.el7.noarch View
127Red Hat7Server-JWS-3.1:tomcat-vault-0:1.0.8-9.Final_redhat_2.1.ep7.el7.src View
128Red Hat7Server-JWS-3.1:tomcat7-0:7.0.70-16.ep7.el7.noarch View
129Red Hat7Server-JWS-3.1:tomcat7-0:7.0.70-16.ep7.el7.src View
130Red Hat7Server-JWS-3.1:tomcat7-admin-webapps-0:7.0.70-16.ep7.el7.noarch View
131Red Hat7Server-JWS-3.1:tomcat7-docs-webapp-0:7.0.70-16.ep7.el7.noarch View
132Red Hat7Server-JWS-3.1:tomcat7-el-2.2-api-0:7.0.70-16.ep7.el7.noarch View
133Red Hat7Server-JWS-3.1:tomcat7-javadoc-0:7.0.70-16.ep7.el7.noarch View
134Red Hat7Server-JWS-3.1:tomcat7-jsp-2.2-api-0:7.0.70-16.ep7.el7.noarch View
135Red Hat7Server-JWS-3.1:tomcat7-jsvc-0:7.0.70-16.ep7.el7.noarch View
136Red Hat7Server-JWS-3.1:tomcat7-lib-0:7.0.70-16.ep7.el7.noarch View
137Red Hat7Server-JWS-3.1:tomcat7-log4j-0:7.0.70-16.ep7.el7.noarch View
138Red Hat7Server-JWS-3.1:tomcat7-selinux-0:7.0.70-16.ep7.el7.noarch View
139Red Hat7Server-JWS-3.1:tomcat7-servlet-3.0-api-0:7.0.70-16.ep7.el7.noarch View
140Red Hat7Server-JWS-3.1:tomcat7-webapps-0:7.0.70-16.ep7.el7.noarch View
141Red Hat7Server-JWS-3.1:tomcat8-0:8.0.36-17.ep7.el7.noarch View
142Red Hat7Server-JWS-3.1:tomcat8-0:8.0.36-17.ep7.el7.src View
143Red Hat7Server-JWS-3.1:tomcat8-admin-webapps-0:8.0.36-17.ep7.el7.noarch View
144Red Hat7Server-JWS-3.1:tomcat8-docs-webapp-0:8.0.36-17.ep7.el7.noarch View
145Red Hat7Server-JWS-3.1:tomcat8-el-2.2-api-0:8.0.36-17.ep7.el7.noarch View
146Red Hat7Server-JWS-3.1:tomcat8-javadoc-0:8.0.36-17.ep7.el7.noarch View
147Red Hat7Server-JWS-3.1:tomcat8-jsp-2.3-api-0:8.0.36-17.ep7.el7.noarch View
148Red Hat7Server-JWS-3.1:tomcat8-jsvc-0:8.0.36-17.ep7.el7.noarch View
149Red Hat7Server-JWS-3.1:tomcat8-lib-0:8.0.36-17.ep7.el7.noarch View
150Red Hat7Server-JWS-3.1:tomcat8-log4j-0:8.0.36-17.ep7.el7.noarch View
151Red Hat7Server-JWS-3.1:tomcat8-selinux-0:8.0.36-17.ep7.el7.noarch View
152Red Hat7Server-JWS-3.1:tomcat8-servlet-3.1-api-0:8.0.36-17.ep7.el7.noarch View
153Red Hat7Server-JWS-3.1:tomcat8-webapps-0:8.0.36-17.ep7.el7.noarch View
154Red HatRed Hat JBoss Web Server 3.1 View
155apachetomcat View
Total affected vendors: 7|Products: 155

RED HAT CSAF/VEX: Product Impact Check

Does this CVE affect my Red Hat product?

The results come directly from the Red Hat CSAF VEX product status; they are not estimates.

Fix released

Bu ürün dalı için Red Hat düzeltmesi yayımlanmış.

SCORING: CVSS from Multiple Sources

CVSS Scores

The Common Vulnerability Scoring System is a standardised framework for assessing the severity of vulnerabilities in software and systems. We collect and display CVSS scores from several sources for each CVE.

SCOREVERSIONSEVERITYVECTORSOURCE
9.8CVSS V31CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HNVD
8.1cvss_v3HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HRed Hat
7.5CVSS V2—AV:N/AC:L/Au:N/C:P/I:P/A:PNVD
6.8cvss_v2—AV:N/AC:M/Au:N/C:P/I:P/A:PRed Hat

Patch and Remediation Guide

Solution & Remediation Advisory

Partial patch

50 düzeltme kanıtı bulundu; en az 16 ürün veya sürüm hâlâ etkileniyor ya da inceleniyor.

redhat

Before applying the update, back up your existing Red Hat JBoss Web Server installation (including all applications and configuration files). For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing the updated packages, the httpd daemon will be restarted automatically.

Open source
redhat

Before applying the update, back up your existing Red Hat JBoss Web Server installation (including all applications and configuration files). For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing the updated packages, the httpd daemon will be restarted automatically.

Open source
redhat

Before applying the update, back up your existing Red Hat JBoss Web Server installation (including all applications and configuration files). The References section of this erratum contains a download link (you must log in to download the update).

Open source
redhat

Will not fix

nvd

NVD tarafından Patch olarak etiketlenmiş referans

Open source
nvd

NVD tarafından Patch olarak etiketlenmiş referans

Open source
nvd

NVD tarafından Patch olarak etiketlenmiş referans

Open source
nvd

NVD tarafından Patch olarak etiketlenmiş referans

Open source
nvd

NVD tarafından Patch olarak etiketlenmiş referans

Open source
nvd

NVD tarafından Patch olarak etiketlenmiş referans

Open source
nvd

NVD tarafından Patch olarak etiketlenmiş referans

Open source
nvd

NVD tarafından Patch olarak etiketlenmiş referans

Open source
Confirm the affected product and version against the source evidence above.
Restrict access to internet-facing services and apply network segmentation.
Apply the official update named in the evidence only to the matching product and version.
Monitor server logs and network endpoints for signs of anomalous execution.

Public exploit and active exploitation status

Verified exploit intelligence

This CVE is marked as actively exploited in the CISA KEV catalogue, but no verified, downloadable public PoC or Metasploit module has been found yet. Evidence of active exploitation does not mean that public exploit code exists.

Weakness Classification and Attack Patterns (CWE & CAPEC)

CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorises the common flaws or weaknesses that can lead to vulnerabilities. CVE-2016-8735 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

Common Attack Pattern Enumeration and Classification (CAPEC) stores attack patterns, which are descriptions of the common attributes and approaches employed by adversaries to exploit the CVE-2016-8735 weaknesses.

Attack Vector and Accessibility

ExposureAğ üzerinden
PermissionsGerekmiyor
UserGerekmiyor

Official Sources and Advisories

CVSS Vector Radar Chart

9.8 / 10
Attack VectorNetworkComplexityLowPrivilegesNoneUser Interact.NoneConfidentialityLowIntegrityNoneAvailabilityHigh

Vulnerability Scoring Details

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone required
User InteractionNone required
Confidentiality (Gizlilik)Low
Integrity (Bütünlük)None
Availability (Erişilebilirlik)High

Kısmi yama

50 düzeltme kanıtı bulundu; en az 16 ürün veya sürüm hâlâ etkileniyor ya da inceleniyor.

Follow the vendor

A
apache logo
apache
N
netapp logo
netapp
D
debian logo
debian
R
redhat logo
redhat
O
oracle logo
oracle

Weakness Type (CWE & CAPEC)

Similar Vulnerabilities

Get this vulnerability through the API

Affected products, version ranges, exploitation status and patch information in a single request, with a free key.

curl -H "x-api-key: $DAYBREACH_API_KEY" \
  "https://api.enginteksut.com.tr/api/v1/intel/cves/CVE-2016-8735"
CVE-2016-8735 · Vulnerability in Apache Tomcat · DayBreach