Apache Tomcat Sensitive Information Disclosure Vulnerability
Last Update Date:
5 Oct 2018 10:14
Release Date:
5 Oct 2018
4999
Views
RISK: Medium Risk
TYPE: Servers - Web Servers
A vulnerability has been identified in Apache Tomcat, a remote attacker can exploit this vulnerability to trigger sensitive information disclosure on the targeted system.
Impact
- Information Disclosure
System / Technologies affected
- Apache Tomcat 9.0.0.M1 - 9.0.11
- Apache Tomcat 8.5.0 - 8.5.33
- Apache Tomcat 7.0.23 - 7.0.90
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
The vendor has issued a fix :
- Upgrade to Apache Tomcat 9.0.12
- Upgrade to Apache Tomcat 8.5.34
- Upgrade to Apache Tomcat 7.0.91
Vulnerability Identifier
Source
Related Link
Share with