Loading HuntDB...

CVE-2016-6794

UNKNOWN
Published 2017-08-10T16:00:00Z
Actions:
No CVSS data available

Description

When a SecurityManager is configured, a web application's ability to read system properties should be controlled by the SecurityManager. In Apache Tomcat 9.0.0.M1 to 9.0.0.M9, 8.5.0 to 8.5.4, 8.0.0.RC1 to 8.0.36, 7.0.0 to 7.0.70, 6.0.0 to 6.0.45 the system property replacement feature for configuration files could be used by a malicious web application to bypass the SecurityManager and read system properties that should not be visible.

Available Exploits

No exploits available for this CVE.

Related News

No news articles found for this CVE.

Affected Products

References

Published: 2017-08-10T16:00:00Z
Last Modified: 2024-09-17T04:24:06.893Z
Copied to clipboard!