PT-2010-5289 · Apache+1 · Apache Tomcat+2

Abdulaziz Hariri

·

Publicado

2010-10-26

·

Atualizado

2011-01-11

·

CVE-2010-4094

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM Rational Quality Manager and Rational Test Lab Manager (affected versions not specified)
Description The issue concerns a default password for the ADMIN account in the Tomcat server, which can be exploited by remote attackers to execute arbitrary code. This can be achieved by leveraging access to the manager role.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-4094

Produtos afetados

Ibm Rational Quality Manager
Rational Test Lab Manager
Apache Tomcat