Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The default servlet (org.apache.catalina.servlets.DefaultServlet) in Tomcat 4.0.4 and 4.1.10 and earlier allows remote attackers to read source code for server files via a direct request to the servlet.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Tomcat DefaultServlet文件泄露漏洞
Vulnerability Description
Tomcat 4.0.4版本和4.1.10版本以及之前版本中的默认控制器(org.apache.catalina.servlets.DefaultServlet)存在漏洞,远程攻击者可以借助到控制器的直接请求读取服务器文件的源代码。
CVSS Information
N/A
Vulnerability Type
N/A