Apache Tomcat WAR file directory traversal vulnerability

  • <div class="bb-coolbox"><span class="bb-dark">This alert was generated using only banner information. It may be a false positive. </span></div><br/> Apache Tomcat is prone to a directory-traversal vulnerability because the application fails to sufficiently sanitize user-supplied input. Exploiting this issue allows attackers to delete or overwrite arbitrary files within the context of the web-server.<br/><br/> <span class="bb-navy">Affected Apache Tomcat version (5.5.0 - 5.5.28).</span><br/> <span class="bb-navy">Affected Apache Tomcat version (6.0.0 - 6.0.20).</span><br/>
  • Upgrade Apache Tomcat to the latest version.