http://tomcat.apache.org/security-jk.html
https://www.zerodayinitiative.com/advisories/ZDI-07-008.html
Severity: High
ID: 24770
File Name: freebsd_pkg_cf86c644cb6c11db8e9d000c6ec775d9.nasl
Version: 1.17
Type: local
Family: FreeBSD Local Security Checks
Published: 3/6/2007
Updated: 1/6/2021
Supported Sensors: Nessus
Risk Factor: Medium
Score: 6.8
Risk Factor: High
Base Score: 7.5
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P
CPE: p-cpe:/a:freebsd:freebsd:mod_jk, p-cpe:/a:freebsd:freebsd:mod_jk-ap2, cpe:/o:freebsd:freebsd
Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 3/5/2007
Vulnerability Publication Date: 3/2/2007
CANVAS (D2ExploitPack)
Core Impact
Metasploit (Apache mod_jk 1.2.20 Buffer Overflow)
CVE: CVE-2007-0774