Tomcat security vulnerability/ or security config issue

2013-04-18 Thread Wen Liu
Howdy, I have a issue with Tomcat security, please find the spec below: Server version: Apache Tomcat/6.0.35 Server built: Nov 28 2011 11:20:06 Server number: 6.0.35.0 OS Name:SunOS OS Version: 5.10 Architecture: x86 JVM Version:1.6.0_33-b03 JVM Vendor: Sun

Re: Tomcat security vulnerability/ or security config issue

2013-04-18 Thread Mark Thomas
On 18/04/2013 14:14, Wen Liu wrote: Howdy, I have a issue with Tomcat security, please find the spec below: Server version: Apache Tomcat/6.0.35 Server built: Nov 28 2011 11:20:06 Server number: 6.0.35.0 OS Name:SunOS OS Version: 5.10 Architecture: x86 JVM

Re: Tomcat security vulnerability/ or security config issue

2013-04-18 Thread David kerber
If things are configured properly, web users won't be able to see anything outside your app hierarchy, so something clearly isn't set up properly. On 4/18/2013 9:14 AM, Wen Liu wrote: Howdy, I have a issue with Tomcat security, please find the spec below: Server version: Apache

RE: Tomcat security vulnerability/ or security config issue

2013-04-18 Thread Caldarale, Charles R
From: David kerber [mailto:dcker...@verizon.net] Subject: Re: Tomcat security vulnerability/ or security config issue If things are configured properly, web users won't be able to see anything outside your app hierarchy, so something clearly isn't set up properly. This has little to do