Apache Tomcat (webdav) Remote File Disclosure Exploit
Data de publicação: 21 julho 2015
Schweregrad: : Baixo
Identificador(es) CVE: : CVE-2007-5461,CVE-2007-5731
Data do informe: 21 julho 2015
Descrição
Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0.0 through 6.0.14, under certain configurations, allows remote authenticated users to read arbitrary files via a WebDAV write request that specifies an entity with a SYSTEM tag.
Exposição das informações
Apply associated Trend Micro DPI Rules.
Solução
Trend Micro Deep Security DPI Rule Number: 1001138
Trend Micro Deep Security DPI Rule Name: 1001138 - Apache Tomcat Remote File Disclosure Vulnerability
Software infectado e versão:
- Apache Software Foundation Tomcat