imPC@ndo IT

Tracker / CVE-2017-12615

CVE-2017-12615

Ransomware High 8.1

When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via setting the readonly initialisation parameter of the Default to false) it was possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be executed by the server.

Affected products and versions

apache tomcat · 7.0.0 → 7.0.79
netapp 7-mode_transition_tool
netapp oncommand_balance
netapp oncommand_shift
redhat enterprise_linux_desktop
redhat enterprise_linux_eus
redhat enterprise_linux_eus_compute_node
redhat enterprise_linux_for_ibm_z_systems
redhat enterprise_linux_for_ibm_z_systems_eus
redhat enterprise_linux_for_power_big_endian
redhat enterprise_linux_for_power_big_endian_eus
redhat enterprise_linux_for_power_little_endian
redhat enterprise_linux_for_power_little_endian_eus
redhat enterprise_linux_for_scientific_computing
redhat enterprise_linux_server
redhat enterprise_linux_server_aus
redhat enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions
redhat enterprise_linux_server_tus
redhat enterprise_linux_server_update_services_for_sap_solutions
redhat enterprise_linux_workstation
redhat jboss_enterprise_web_server
redhat jboss_enterprise_web_server_text-only_advisories

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References