Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-6325
Description:The Tomcat package on Red Hat Enterprise Linux (RHEL) 5 through 7, JBoss Web Server 3.0, and JBoss EWS 2 uses weak permissions for (1) /etc/sysconfig/tomcat and (2) /etc/tomcat/tomcat.conf, which allows local users to gain privileges by leveraging membership in the tomcat group.
Test IDs: 1.3.6.1.4.1.25623.1.0.882575   1.3.6.1.4.1.25623.1.0.871669   1.3.6.1.4.1.25623.1.0.871670   1.3.6.1.4.1.25623.1.0.882576  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-6325
93478
http://www.securityfocus.com/bid/93478
RHSA-2016:2045
http://rhn.redhat.com/errata/RHSA-2016-2045.html
RHSA-2016:2046
http://rhn.redhat.com/errata/RHSA-2016-2046.html
RHSA-2017:0455
https://access.redhat.com/errata/RHSA-2017:0455
RHSA-2017:0456
https://access.redhat.com/errata/RHSA-2017:0456
RHSA-2017:0457
http://rhn.redhat.com/errata/RHSA-2017-0457.html
http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
https://bugzilla.redhat.com/show_bug.cgi?id=1367447
https://bugzilla.redhat.com/show_bug.cgi?id=1367447




© 1998-2025 E-Soft Inc. All rights reserved.