|
COMMAND Snoop Servlet SYSTEMS AFFECTED Tomcat 3.1 and 3.0 PROBLEM Following was found by ET LoWNOISE. The Snoop Servlet will give you too much info (PATHs, OS, etc.). To exploit, just do: http://narco.guerrilla.sucks.co:8080/examples/jsp/snp/anything.snp SOLUTION Nothing yet.