5
CVSSv2

CVE-2000-0672

Published: 20/07/2000 Updated: 22/02/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The default configuration of Jakarta Tomcat does not restrict access to the /admin context, which allows remote malicious users to read arbitrary files by directly calling the administrative servlets to add a context for the root directory.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache tomcat 3.0

apache tomcat 3.1