Question about Tomcat Virtual Host to prevent Improper-Input-Handling attack

2017-05-22 Thread Cai, Charles [COMRES/RTC/RTC]
Hi there, Server Specs: Server version: Apache Tomcat/7.0.54 Server built: May 19 2014 10:26:15 Server number: 7.0.54.0 OS Name:Windows Server 2012 OS Version: 6.2 Architecture: amd64 JVM Version:

RE: Question about Tomcat Virtual Host to prevent Improper-Input-Handling attack

2017-05-23 Thread Cai, Charles [COMRES/RTC/RTC]
, Charles [COMRES/RTC/RTC] wrote: > Hi there, > > __ > __ > Server Specs: > Server version: Apache Tomcat/7.0.54 > Server built: May 19 2014 10:26:15 > Server number: 7.0.54.0 > OS Name:

RE: Tomcat URL encoding

2017-06-15 Thread Cai, Charles [COMRES/RTC/RTC]
M, Cai, Charles [COMRES/RTC/RTC] < charles@emerson.com> wrote: > Hi Guys, > > Looking for help here after search on the web for couple hours: > > I'm currently doing some testing on Tomcat 8.5.9 I'm trying to encode > all the URL that is requesting to my serv

Tomcat URL encoding

2017-06-15 Thread Cai, Charles [COMRES/RTC/RTC]
Hi Guys, Looking for help here after search on the web for couple hours: I'm currently doing some testing on Tomcat 8.5.9 I'm trying to encode all the URL that is requesting to my server. One thing I have noticed it wasn't working is the `\` (back slash) can't be allowed in the URL. I'm