Apache Tomcat 3.0 Directory Traversal Vulnerability
BID:2518
Info
Apache Tomcat 3.0 Directory Traversal Vulnerability
| Bugtraq ID: | 2518 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 28 2001 12:00AM |
| Updated: | Mar 28 2001 12:00AM |
| Credit: | Discovered and posted to Bugtraq by lovehacker <[email protected]> on March 28, 2001. |
| Vulnerable: |
Apache Tomcat 3.2.1 Apache Tomcat 3.0 |
| Not Vulnerable: |
Apache Tomcat 3.2.2 beta2 |
Discussion
Apache Tomcat 3.0 Directory Traversal Vulnerability
Apache Tomcat in a Windows NT environment could be led to traverse the normal directory structure and return requested files from outside of the document root.
By including '/../' sequences along with specially chosen characters in requested URLs, a remote user can obtain read access to directories and files outside of the document root, potentially compromising the privacy of user data and/or obtaining information which could be used to further compromise the host.
Apache Tomcat in a Windows NT environment could be led to traverse the normal directory structure and return requested files from outside of the document root.
By including '/../' sequences along with specially chosen characters in requested URLs, a remote user can obtain read access to directories and files outside of the document root, potentially compromising the privacy of user data and/or obtaining information which could be used to further compromise the host.
References
Apache Tomcat 3.0 Directory Traversal Vulnerability
References:
References:
- Tomcat Homepage (Apache Software Foundation)