掲載番号:NV11-002
脆弱性情報識別番号:CVE-2009-2902
Apache Tomcatにワークディレクトリのファイルを削除される脆弱性
概要
Apache Tomcatには、ディレクトリトラバーサルの脆弱性があります。
攻撃者により、WARファイル名のディレクトリトラバーサルシーケンスを介して、ワークディレクトリのファイルを削除される可能性があります。
対象製品
WebOTX
- 対処方法
対象となる製品のバージョン:
WebOTX Web Edition V4.x〜V6.x
WebOTX Standard-J Edition V4.x〜V6.x
WebOTX Standard Edition V4.x〜V6.x
WebOTX Enterprise Edition V4.x〜V6.x
WebOTX Application Server Web Edition V7.x〜V8.1x
WebOTX Application Server Standard-J Edition V7.x 〜V8.1x
WebOTX Application Server Standard Edition V7.x 〜V8.1x
WebOTX Application Server Enterprise Edition V7.x 〜V8.1x
WebOTX SIP Application Server V7.x〜V8.1x
WebOTX UDDI Registry V1.1〜V7.1
WebOTX 開発環境 V6.1〜V6.5
WebOTX Developer V7.x〜V8.1x
WebOTX Enterprise Service Bus Ver6.4〜V7.x
WebOTX Application Server Express V8.2
WebOTX Application Server Foundation V8.2
WebOTX Application Server Standard V8.2
WebOTX Application Server Enterprise V8.2
別途パッチを用意しております。詳細につきましては弊社営業にお問合せください。
参考情報
更新情報