Apache Tomcat (webdav) Remote File Disclosure Exploit
Publish Date: 21 luglio 2015
Gravità: : Basso
Identificatori CVE: CVE-2007-5461,CVE-2007-5731
Data notifica: 21 luglio 2015
Descrizione
Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0.0 through 6.0.14, under certain configurations, allows remote authenticated users to read arbitrary files via a WebDAV write request that specifies an entity with a SYSTEM tag.
Informazioni esposizione:
Apply associated Trend Micro DPI Rules.
Soluzioni
Trend Micro Deep Security DPI Rule Number: 1001138
Trend Micro Deep Security DPI Rule Name: 1001138 - Apache Tomcat Remote File Disclosure Vulnerability
Software e versione interessati:
- Apache Software Foundation Tomcat