I and my friend Gianmarco Pirozzi discovered new vulnerabilities affecting Apache Tomcat which allow to perform the following malicious activities:
For more details you can read our Original Advisory: Apache Tomcat 5.5.25 Start/Stop/Deploy/Undeploy Application | CSRF Vulnerabilities
MITRE CVE Numbering Authority assigned me CVE-2013-6357 for these vulnerabilities.