CN
CyberNewsUz
Threat Intelligence Portal
LOADING0%
CyberNewsUz
Threat Intelligence Portal
CyberNewsUz
Threat Intelligence Portal
Apache Tomcat-ning 9.0.0.M1 dan 9.0.0 gacha, 8.5.0 dan 8.5.22 gacha, 8.0.0.RC1 dan 8.0.46 gacha va 7.0.0 dan 7.0.81 gacha bo'lgan HTTP PUT-lari yoqilgan versiyalarini ishga tushirganda (masalan, faqat o'qish uchun Defalult-ni yuklash parametrini o'rnatish orqali). JSP faylini serverga maxsus tayyorlangan so'rov orqali yuboring. Keyinchalik bu JSP so'ralishi mumkin va undagi har qanday kod server tomonidan bajariladi.
Vendor
Apache
Product
Tomcat
CVSS Score
8.1
Nashr sanasi
4-okt, 2017
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H