GCVE-VVD-MAGEIA-2017-196
Advisory Published
Vulnetix · Advisory published June 29, 2017
Aniket Nandkishor Kulkarni discovered that in tomcat7, static error pages used the original request's HTTP method to serve content, instead of systematically using the GET method. This could under certain conditions result in undesirable results, including the replacement or removal of the custom error page (CVE-2017-5664).

Affected Products

VendorProductVersionsPlatforms
Mageiatomcat0 (affected), 7.0.78-1.mga5 (unaffected)

References

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.