Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h6c8-x5r3-pm88

Опубликовано: 13 мая 2022
Источник: github
Github: Прошло ревью

Описание

Apache Tomcat Unrestricted file upload vulnerability

Unrestricted file upload vulnerability in Apache Tomcat 7.x before 7.0.40, in certain situations involving outdated java.io.File code and a custom JMX configuration, allows remote attackers to execute arbitrary code by uploading and accessing a JSP file.

Пакеты

Наименование

org.apache.tomcat:tomcat

maven
Затронутые версииВерсия исправления

>= 7.0, < 7.0.40

7.0.40

EPSS

Процентиль: 90%
0.06209
Низкий

Дефекты

CWE-94

Связанные уязвимости

ubuntu
почти 11 лет назад

Unrestricted file upload vulnerability in Apache Tomcat 7.x before 7.0.40, in certain situations involving outdated java.io.File code and a custom JMX configuration, allows remote attackers to execute arbitrary code by uploading and accessing a JSP file.

redhat
почти 11 лет назад

Unrestricted file upload vulnerability in Apache Tomcat 7.x before 7.0.40, in certain situations involving outdated java.io.File code and a custom JMX configuration, allows remote attackers to execute arbitrary code by uploading and accessing a JSP file.

nvd
почти 11 лет назад

Unrestricted file upload vulnerability in Apache Tomcat 7.x before 7.0.40, in certain situations involving outdated java.io.File code and a custom JMX configuration, allows remote attackers to execute arbitrary code by uploading and accessing a JSP file.

debian
почти 11 лет назад

Unrestricted file upload vulnerability in Apache Tomcat 7.x before 7.0 ...

fstec
почти 11 лет назад

Уязвимость программного обеспечения Apache Tomcat, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 90%
0.06209
Низкий

Дефекты

CWE-94