THE CENZIC BLOG
Read more articles in  Cenzic SmartAttack Updates for Web Vulnerabilities
.
June 05, 2009

Cenzic Detects an Apache Tomcat Denial of Service Vulnerability

An Apache Tomcat Denial of Service Vulnerability is now detectable in the Cenzic Web Server SmartAttack

Cenzic weekly product updatesAs of June 5, 2009, Cenzic can detect the Apache Tomcat Java AJP Connector Invalid Header Denial of Service Vulnerability (BugtraqID 35193).   Apache Tomcat is prone to a denial-of-service vulnerability.  Attackers can exploit this issue and cause the server to end up in an error state, denying service to legitimate users.

Background on Cenzic’s SmartAttacks
Every week, Cenzic’s suite of products is updated with the latest vulnerabilities (custom, commercial, and open-source) to better detect "holes" in Web applications.  These Web application vulnerabilities include (but not limited to) cross site scripting, buffer overflow, path or directory traversal, SQL injection, HTTP response splitting, and other workflow types.

by
Erin Swanson
Eswanson@cenzic.com


Syndication OptionsRSS (Rich Site Summary) Feed Atom Feed OPML (Outline Processor Language) Feed MYST-ML (MyST Markup Language) Content Feed MS-Office Smart Tag Subscription