This script is Copyright (C) 2010-2016 Tenable Network Security, Inc.
The remote Apache Tomcat server is affected by a JSP source disclosure
The remote Apache Tomcat server is affected by an information
disclosure vulnerability which allows JSP source code to be sent as a
response to an HTTP request that does not end with an HTTP protocol
This install is also likely to be affected by a cross-site scripting
vulnerability and an additional information disclosure vulnerability,
although Nessus did not test explicitly for either of those issues.
See also :
Update to Apache Tomcat version 3.2.2 or later.
Risk factor :
Medium / CVSS Base Score : 5.0
CVSS Temporal Score : 4.2
Public Exploit Available : false
Family: Web Servers
Nessus Plugin ID: 50347 ()
Bugtraq ID: 2518
CVE ID: CVE-2001-0590
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.