CVE-2025-24813

Apache Tomcat Remote Code Execution Vulnerability (CVE-2025-24813)

março 11, 2025

Overview Recently, NSFOCUS CERT detected that Apache issued a security announcement and fixed the remote code execution vulnerability of Apache Tomcat (CVE-2025-24813). An unauthenticated attacker can execute arbitrary code to gain server privileges when the application has servlet write enabled (disabled by default), uses Tomcat file session persistence and a default storage location, and contains […]

Search

Inscreva-se no Blog da NSFOCUS