System running
Last check: 2026-09-29 03:27:30 | Auto-updates every hour
756 PoCs
CybersecPlayground | The ultimate platform for cybersecurity learning & Bug Bounty Resources

CVE-CVE-2020-1938

Severity
CRITICAL
CVSS Score
9.8
Description

When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomcat treats AJP connections as having higher trust than, for example, a similar HTTP connection. If such connections are available to an attacker, they can be exploited in ways that may be surprising. In Apache Tomcat 9.0.0.M1 to 9.0.0.30, 8.5.0 to 8.5.50 and 7.0.0 to 7.0.99, Tomcat shipped with an AJP Connector enabled by default that listened on all configured IP addresses. It ...

PoCs for CVE-CVE-2020-1938

CVE-2020-1938-Tomcat-FileRead
General Python 0
lem0n817 2026-09-04
Master Cybersecurity | Join CybersecPlayground for Cybersecurity Learning & Bug Bounty Resources