RE: Tomcat security vulnerability/ or security config issue

2013-04-18 Thread Caldarale, Charles R
> From: David kerber [mailto:dcker...@verizon.net] > Subject: Re: Tomcat security vulnerability/ or security config issue > If things are configured properly, web users won't be able to see > anything outside your app hierarchy, so something clearly isn't set up > prop

Re: Tomcat security vulnerability/ or security config issue

2013-04-18 Thread David kerber
If things are configured properly, web users won't be able to see anything outside your app hierarchy, so something clearly isn't set up properly. On 4/18/2013 9:14 AM, Wen Liu wrote: Howdy, I have a issue with Tomcat security, please find the spec below: Server version: Apache Tomcat/6.0.

Re: Tomcat security vulnerability/ or security config issue

2013-04-18 Thread Mark Thomas
On 18/04/2013 14:14, Wen Liu wrote: > > > Howdy, > > I have a issue with Tomcat security, please find the spec below: > > Server version: Apache Tomcat/6.0.35 > Server built: Nov 28 2011 11:20:06 > Server number: 6.0.35.0 > OS Name:SunOS > OS Version: 5.10 > Architecture: x86 >

Tomcat security vulnerability/ or security config issue

2013-04-18 Thread Wen Liu
Howdy, I have a issue with Tomcat security, please find the spec below: Server version: Apache Tomcat/6.0.35 Server built: Nov 28 2011 11:20:06 Server number: 6.0.35.0 OS Name:SunOS OS Version: 5.10 Architecture: x86 JVM Version:1.6.0_33-b03 JVM Vendor: Sun Microsystems