Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
MRO Maximo Self Service 4 and 5 stores certain information under the web document root using file extensions that are not processed by Tomcat, which allows remote attackers to obtain sensitive information via a direct request for the file, such as MXServer.properties.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MRO Maximo未明脚本泄露漏洞
Vulnerability Description
MRO Maximo Self Service 4和5使用Tomcat不能处理的文件扩展名在web文档根目录下存储某些信息,远程攻击者可以通过直接请求这些文件,如MXServer.properties,来获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A