tomcat-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "William A. Rowe, Jr." <wr...@rowe-clan.net>
Subject Re: Exploiting Tomcat
Date Thu, 14 Aug 2008 02:36:01 GMT
Jim Manico wrote:
> This is a worthwhile post to read regarding path traversal attacks 
> against tomcat.
> 
> http://www.0x000000.com/?i=630

Worthwhile?  To note the community frustration against Tomcat parsers?
Must be what you meant since the author adds nothing.

New information is always welcome.  Primary sources for the win;

http://outian.org/tomcat.pdf
https://issues.apache.org/bugzilla/show_bug.cgi?id=45417
http://www.securityfocus.com/archive/1/495318/30/0/threaded

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@tomcat.apache.org
For additional commands, e-mail: dev-help@tomcat.apache.org


Mime
View raw message