Threats Tagged 'cve-2025-24813'
View all threats tagged with 'cve-2025-24813'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-24813'
Click on any threat for detailed analysis and mitigation recommendations
0 China-nexus threat actors have deployed a highly opportunistic automated spray-and-check campaign to compromise global government and commercial infrastructure across more than 100 countries. The operation utilizes centralized multi-platform attack infrastructure featuring cracked Cobalt-Strike derivatives and a sophisticated loader ecosystem. Attackers leverage primary infrastructure at 130.94.17.180 for scanning, exploitation, command-and-control, and payload hosting. The campaign employs stage-2 and stage-3 payloads delivered through architecture-specific loaders targeting both Linux and Windows systems. Transport variants include TCP, WebSocket, and KCP protocols. The SNOWLIGHT loader panel manages payload delivery through multiple endpoints. Organizations face persistent threats requiring immediate patching of exposed services, implementation of strong multi-factor authentication, and continuous monitoring for compromise indicators. Join the discussion | CVE Database V5 | 08/03/2026, 09:40:19 UTC Added: 07/21/2025, 17:31:09 UTC |
0 This advisory addresses multiple security vulnerabilities in Apache Tomcat as packaged in Red Hat JBoss Web Server 6.1.0 and related Red Hat Enterprise Linux distributions. The issues include an authentication bypass when using the Jakarta Authentication API (CVE-2024-52316), a denial of service vulnerability in the examples web application (CVE-2024-54677), and a potential remote code execution, information disclosure, or data corruption vulnerability via partial PUT requests (CVE-2025-24813). These vulnerabilities have been fixed in updated versions of the affected software. Join the discussion | GCVE Database | 05/13/2025, 16:02:30 UTC Added: 07/16/2026, 10:40:14 UTC |
0 A security update for tomcat9 addresses a vulnerability identified as CVE-2025-24813, which involves potential remote code execution, information disclosure, or information corruption via partial PUT requests. This vulnerability affects multiple versions of tomcat9 distributed with Red Hat Enterprise Linux 10 and related products. Red Hat has rated the security impact as moderate and has released patches to remediate the issue. Join the discussion | GCVE Database | 05/13/2025, 16:02:04 UTC Added: 08/04/2026, 15:02:00 UTC |
0 Red Hat has issued a security advisory for Apache Tomcat addressing two vulnerabilities: CVE-2024-50379, a remote code execution (RCE) due to a time-of-check to time-of-use (TOCTOU) issue in JSP compilation, and CVE-2025-24813, which involves potential RCE, information disclosure, or information corruption via partial PUT requests. These vulnerabilities affect Red Hat Enterprise Linux 8.8 Extended Update Support versions of Tomcat. The update is rated with moderate severity by Red Hat. A security update is available to remediate these issues. Join the discussion | GCVE Database | 04/08/2025, 12:26:39 UTC Added: 08/04/2026, 15:02:00 UTC |
0 Two security vulnerabilities have been identified in Apache Tomcat as packaged by Red Hat for Red Hat Enterprise Linux 8. The first is a time-of-check to time-of-use (TOCTOU) issue in JSP compilation that can lead to remote code execution (CVE-2024-50379). The second vulnerability involves potential remote code execution, information disclosure, or data corruption via partial HTTP PUT requests (CVE-2025-24813). Red Hat has released updated packages to address these issues with a moderate security impact rating. Join the discussion | GCVE Database | 04/08/2025, 12:03:24 UTC Added: 08/04/2026, 15:02:00 UTC |
0 Red Hat has issued a moderate severity security advisory for Apache Tomcat addressing two vulnerabilities: CVE-2024-50379, a remote code execution (RCE) due to a time-of-check to time-of-use (TOCTOU) issue in JSP compilation, and CVE-2025-24813, which could lead to potential RCE, information disclosure, or information corruption via partial PUT requests. The update is available for Red Hat Enterprise Linux 9.4 Extended Update Support and related variants. Users are advised to apply the provided patches to mitigate these vulnerabilities. Join the discussion | GCVE Database | 04/07/2025, 17:37:12 UTC Added: 08/04/2026, 15:02:00 UTC |
0 Red Hat has issued a security advisory for Apache Tomcat addressing two vulnerabilities: CVE-2024-50379, a remote code execution (RCE) vulnerability due to a time-of-check to time-of-use (TOCTOU) issue in JSP compilation, and CVE-2025-24813, which may allow potential RCE, information disclosure, or information corruption via partial PUT requests. The update is rated as having a moderate security impact and affects Red Hat Enterprise Linux 9.2 Extended Update Support versions. The advisory provides updated packages to remediate these issues. Join the discussion | GCVE Database | 04/07/2025, 17:36:37 UTC Added: 08/04/2026, 15:02:00 UTC |
0 Red Hat has issued a security advisory for Apache Tomcat addressing two vulnerabilities: CVE-2024-50379, a remote code execution (RCE) vulnerability caused by a time-of-check to time-of-use (TOCTOU) issue in JSP compilation, and CVE-2025-24813, which may allow RCE, information disclosure, or information corruption via partial PUT requests. The update is rated as having a moderate security impact. Red Hat Enterprise Linux 9 and its variants are affected, and updated packages are available to remediate these issues. Join the discussion | GCVE Database | 04/07/2025, 17:36:37 UTC Added: 08/04/2026, 15:02:00 UTC |
Showing 1 to 8 of 8 results