Hosts vulnerable to CVE-2014-0096

CVE-2014-0096 — severity medium, CVSS 4.3 — 1 affected host indexed by QROS Explore.

About CVE-2014-0096

java/org/apache/catalina/servlets/DefaultServlet.java in the default servlet in Apache Tomcat before 6.0.40, 7.x before 7.0.53, and 8.x before 8.0.4 does not properly restrict XSLT stylesheets, which allows remote attackers to bypass security-manager restrictions and read arbitrary files via a craft

Showing 1 of 1 host, ranked by risk score.

Search all CVE-2014-0096 hosts in Explore

Open in Explore →