語系:
http://tomcat.apache.org/security-6.html
https://access.redhat.com/errata/RHSA-2013:0266
https://access.redhat.com/security/cve/cve-2012-2733
https://access.redhat.com/security/cve/cve-2012-4431
https://access.redhat.com/security/cve/cve-2012-4534
https://access.redhat.com/security/cve/cve-2012-5885
嚴重性: Medium
ID: 76234
檔案名稱: redhat-RHSA-2013-0266.nasl
版本: 1.16
類型: local
代理程式: unix
已發布: 2014/6/26
已更新: 2021/1/14
支援的感應器: Agentless Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
風險因素: Medium
分數: 6.6
風險因素: Medium
基本分數: 5
時間分數: 4.4
媒介: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P
CPE: p-cpe:/a:redhat:enterprise_linux:tomcat6-jsp-2.1-api, p-cpe:/a:redhat:enterprise_linux:tomcat6-lib, p-cpe:/a:redhat:enterprise_linux:tomcat6-log4j, p-cpe:/a:redhat:enterprise_linux:tomcat6-servlet-2.5-api, p-cpe:/a:redhat:enterprise_linux:tomcat6-webapps, cpe:/o:redhat:enterprise_linux:5, cpe:/o:redhat:enterprise_linux:6, p-cpe:/a:redhat:enterprise_linux:tomcat6, p-cpe:/a:redhat:enterprise_linux:tomcat6-admin-webapps, p-cpe:/a:redhat:enterprise_linux:tomcat6-docs-webapp, p-cpe:/a:redhat:enterprise_linux:tomcat6-el-1.0-api, p-cpe:/a:redhat:enterprise_linux:tomcat6-javadoc
必要的 KB 項目: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
可被惡意程式利用: true
可輕鬆利用: Exploits are available
修補程式發佈日期: 2013/2/19
弱點發布日期: 2012/11/16
CVE: CVE-2012-2733, CVE-2012-4431, CVE-2012-4534, CVE-2012-5885, CVE-2012-5886, CVE-2012-5887
BID: 56402, 56403, 56813, 56814
RHSA: 2013:0266