Skip to main content

Apache Tomcat Sensitive Information Disclosure Vulnerability

Last Update Date: 1 Nov 2018 10:09 Release Date: 1 Nov 2018 4157 Views

RISK: Medium Risk

TYPE: Servers - Web Servers

TYPE: Web Servers

A vulnerability has been identified in Apache Tomcat, a remote attacker can exploit this vulnerability to trigger sensitive information disclosure on the targeted system.


Impact

  • Information Disclosure

System / Technologies affected

  • Apache Tomcat JK Connectors 1.2.0 to 1.2.44

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix :
    Upgrade to Apache Tomcat JK ISAPI Connector 1.2.46 or later

Vulnerability Identifier


Source


Related Link