|
|
Apache Tomcat Parameter Processing Remote Information Disclosure Vulnerability
|
Bugtraq ID:
|
27703
|
|
Class:
|
Design Error
|
|
CVE:
|
CVE-2008-0002
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Feb 08 2008 12:00AM
|
|
Updated:
|
Feb 18 2009 05:37PM
|
|
Credit:
|
Chitrapandian N of AdventNet Inc. is credited with the discovery of this vulnerability.
|
|
Vulnerable:
|
S.u.S.E. SUSE Linux Enterprise Server 10 SP2
RedHat Fedora 8 0
RedHat Fedora 7 0
Gentoo www-servers/tomcat 6.0.15
Gentoo www-servers/tomcat 6.0.14
Gentoo www-servers/tomcat 6.0.13
Gentoo www-servers/tomcat 6.0.12
Gentoo www-servers/tomcat 6.0.11
Gentoo www-servers/tomcat 6.0.10
Gentoo www-servers/tomcat 6.0.9
Gentoo www-servers/tomcat 6.0.8
Gentoo www-servers/tomcat 6.0.7
Gentoo www-servers/tomcat 6.0.6
Gentoo www-servers/tomcat 6.0.5
Gentoo www-servers/tomcat 6.0.4
Gentoo www-servers/tomcat 6.0.3
Gentoo www-servers/tomcat 6.0.2
Gentoo www-servers/tomcat 6.0.1
Gentoo www-servers/tomcat 6.0
Apple Mac OS X Server 10.5.5
Apache Software Foundation Tomcat 6.0.15
Apache Software Foundation Tomcat 6.0.14
Apache Software Foundation Tomcat 6.0.13
Apache Software Foundation Tomcat 6.0.12
Apache Software Foundation Tomcat 6.0.11
Apache Software Foundation Tomcat 6.0.10
Apache Software Foundation Tomcat 6.0.9
Apache Software Foundation Tomcat 6.0.8
Apache Software Foundation Tomcat 6.0.7
Apache Software Foundation Tomcat 6.0.6
Apache Software Foundation Tomcat 6.0.5
|
|
|
|
Not Vulnerable:
|
Apache Software Foundation Tomcat 6.0.16
|
|

|