CVE-2023-28708 | Apache Tomcat up to 8.5.85/9.0.71/10.1.5/11.0.0-M2 RemoteIpFilter unprotected transport of credentials (EUVD-2023-0829 / Nessus ID 210913)
A vulnerability classified as problematic has been found in Apache Tomcat up to 8.5.85/9.0.71/10.1.5/11.0.0-M2. This issue affects some unknown processing of the component RemoteIpFilter Handler. This manipulation causes unprotected transport of credentials.
The identification of this vulnerability is CVE-2023-28708. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.