Get a Pentest and security assessment of your IT network.

2021-current

CVE-2016-5425 – The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS,

The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS, Oracle Linux, and possibly other Linux distributions uses weak permissions for /usr/lib/tmpfiles.d/tomcat.conf, which allows local users to gain root privileges by leveraging membership in the tomcat group.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5425

Reference (s):

  • BID:93472
  • URL: http://www.securityfocus.com/bid/93472
  • http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
  • EXPLOIT-DB:40488
  • URL: https://www.exploit-db.com/exploits/40488/
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-4743 - Multiple cross-site scripting (XSS) vulnerabilities in (1) search_ajax.tp

2021-current

CVE-2014-9838 - magick/cache.c in ImageMagick 6.8.9-9 allows remote attackers to cause a

2021-current

CVE-2020-10447 - The way URIs are handled in admin/header.php in Chadha PHPKB Standard Mul