Hosts vulnerable to CVE-2014-0096
CVE-2014-0096 — severity medium, CVSS 4.3 — 1 affected host indexed by QROS Explore.
About CVE-2014-0096
java/org/apache/catalina/servlets/DefaultServlet.java in the default servlet in Apache Tomcat before 6.0.40, 7.x before 7.0.53, and 8.x before 8.0.4 does not properly restrict XSLT stylesheets, which allows remote attackers to bypass security-manager restrictions and read arbitrary files via a craft
Showing 1 of 1 host, ranked by risk score.
Search all CVE-2014-0096 hosts in Explore
Open in Explore →