vendor:
Tomcat
by:
kcdarookie aka eliteb0y
7.5
CVSS
HIGH
Remote File Disclosure
CWE
Product Name: Tomcat
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2007
Apache Tomcat Remote File Disclosure Zeroday Xploit
This exploit allows an attacker to disclose remote files on Apache Tomcat server. The vulnerability may reside in different WebDav implementations. The exploit requires authentication to work.
Mitigation:
To mitigate this vulnerability, it is recommended to update to the latest version of Apache Tomcat and properly configure access controls.