Synopsis
The instance of Apache Tomcat running on the remote host is affected by a denial of service vulnerability.
Description
It was possible to freeze or crash Windows or the Apache Tomcat web server by reading thousands of times an MS/DOS device through the Tomcat servlet engine, using a file name like /examples/servlet/AUX.
An attacker can exploit this flaw to make your system crash continuously, preventing you from working properly.
Solution
Upgrade to Tomcat 3.3.1a or higher.
Plugin Details
Nessus ID: 11150
Risk Information
Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P
Vulnerability Information
CPE: cpe:/a:apache:tomcat
Patch Publication Date: 9/6/2002
Vulnerability Publication Date: 3/26/2003