Apache Tomcat CVE-2011-2481 Information Disclosure Vulnerability

description-logoDescription

The re-factoring of XML validation for Tomcat 7.0.x re-introduced the vulnerability previously reported as CVE-2009-0783. This was initially reported as a memory leak. If a web application is the first web application loaded, this bugs allows that web application to potentially view and/or alter the web.xml, context.xml and tld files of other web applications deployed on the Tomcat instance.

affected-products-logoAffected Applications

Apache Tomcat

CVE References

CVE-2011-2481