Severity: Medium
ID: 40143
File Name: suse_11_0_tomcat6-080821.nasl
Version: 1.17
Type: local
Agent: unix
Family: SuSE Local Security Checks
Published: 7/21/2009
Updated: 1/14/2021
Supported Sensors: Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
Risk Factor: Low
Score: 2.9
Risk Factor: Medium
Base Score: 4.3
Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N
CPE: p-cpe:/a:novell:opensuse:tomcat6-admin-webapps, p-cpe:/a:novell:opensuse:tomcat6-servlet-2_5-api, p-cpe:/a:novell:opensuse:tomcat6-docs-webapp, cpe:/o:novell:opensuse:11.0, p-cpe:/a:novell:opensuse:tomcat6-lib, p-cpe:/a:novell:opensuse:tomcat6-javadoc, p-cpe:/a:novell:opensuse:tomcat6-jsp-2_1-api, p-cpe:/a:novell:opensuse:tomcat6, p-cpe:/a:novell:opensuse:tomcat6-webapps
Required KB Items: Host/local_checks_enabled, Host/SuSE/release, Host/SuSE/rpm-list
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 8/21/2008
Vulnerability Publication Date: 8/12/2008
CANVAS (D2ExploitPack)
Elliot (Apache Tomcat File Disclosure)
CVE: CVE-2008-2938
CWE: 22