CVE-2007-5461

EPSS 6.3%

Apache Tomcat Path Traversal Vulnerability

發布日:2022/5/1修改日:2024/1/8

描述

Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0.0 through 6.0.14, under certain configurations, allows remote authenticated users to read arbitrary files via a WebDAV write request that specifies an entity with a SYSTEM tag.

受影響套件(1)

參考連結(35)