CVE-2002-1895

The servlet engine in Jakarta Apache Tomcat 3.3 and 4.0.4, when using IIS and the ajp1.3 connector, allows remote attackers to cause a denial of service (crash) via a large number of HTTP GET requests for an MS-DOS device such as AUX, LPT1, CON, or PRN.


We have discovered 3,804 live websites that are affected by CVE-2002-1895.

Test my site




Affected Software

Product  Apache Tomcat
Category Web Servers
Vulnerable Domains3,804 live websites (26.83% of Apache Tomcat install base)
Vulnerable Versions
  • from 0 before 4.0.4
Vulnerable Versions Count2 versions ( 0.51% of all versions)



Details

  • Published - Jun 28, 2005
  • Updated - Aug 8, 2024

CVE-2002-1895 usage by Country

United States574 websites



Canada1,381 websites
China605 websites
Bangladesh134 websites
Hong Kong114 websites
Germany83 websites
France78 websites
Spain77 websites
Italy75 websites

CVE-2002-1895 usage by TLD

.com2,045 websites
.org213 websites
.net186 websites
.cn160 websites
.com.cn87 websites
.de51 websites
.es41 websites
.it41 websites
.fr35 websites
.edu35 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2002-1895

Top websites that are affected by CVE-2002-1895. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
***.*****.org United States**,***
*****.de Germany**,***
****************************.org Netherlands**,***
****.com United States**,***
*************.***.mx United States**,***
********.com United States**,***
*****.hu Hungary***,***
********.***.****.gov United States***,***
***.***.org Switzerland***,***
**************.com United States***,***
See full domain list

FAQ

A total of 3,804 websites have been identified as vulnerable to CVE-2002-1895, discovered through global website indexing conducted by WebTechSurvey.
Apache Tomcat is susceptible to CVE-2002-1895 vulnerability.
Apache Tomcat versions before 4.0.4 are vulnerable to CVE-2002-1895.
Version 4.0.4 of Apache Tomcat addresses the CVE-2002-1895 security vulnerability.