Nessus Plugin #11204

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

Apache Tomcat Default Accounts

Family:
General
Category:
attack
Copyright:
This script is Copyright (C) 2003 Digital Defense Inc.
Summary:
Apache Tomcat Default Accounts
Version:
$Revision: 1.6 $
Cve_id:
CAN-1999-0508
Bugtraq_id:
-
Xrefs:
-
Description:


This host appears to be the running the Apache Tomcat
Servlet engine with the default accounts still configured.
A potential intruder could reconfigure this service in a way
that grants system access.

Solution: Change the default passwords by editing the
admin-users.xml file located in the /conf/users
subdirectory of the Tomcat installation.

Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.