CVE-2012-3544EPSS p95.8%

CVE-2012-3544CVE-2012-3544

apache / tomcat

Description

Apache Tomcat 6.x before 6.0.37 and 7.x before 7.0.30 does not properly handle chunk extensions in chunked transfer coding, which allows remote attackers to cause a denial of service by streaming data.

Scoring

CVSS 5.0 ()
VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS11.00% probability of exploitation · percentile 95.8% · 2026-10-10T12:00:23Z
Last modified2026-10-09
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.