AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-3382

MEDIUM · CVSS 4.3 EPSS 37.50%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-08-14 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-3382
Severity
MEDIUM
CVSS
4.3
EPSS
37.50%
Apache

Original NVD Description

Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 treats single quotes ("'") as delimiters in cookies, which might cause sensitive information such as session IDs to be leaked and allow remote attackers to conduct session hijacking attacks.