¡¾·ì϶¹«¸æ¡¿Apache Tomcat Ŀ¼±éÀú·ì϶(CVE-2025-55752)
°ä²¼¹¦·ò 2025-10-28Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | Apache Tomcat Ŀ¼±éÀú·ì϶ | ||
CVE ID | CVE-2025-55752 | ||
·ì϶ÀàÐÍ | Ŀ¼±éÀú | ·¢ÏÖ¹¦·ò | 2025-10-28 |
·ì϶ÆÀ·Ö | 7.5 | ·ì϶µÈ¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | µÍ |
ÀûÓÃÄÑ¶È | ¸ß | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | δ¹«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
Apache TomcatÊÇÒ»¸ö¿ªÔ´µÄÀûÓ÷þÎñÆ÷£¬ÖØÒªÓÃÓÚÔËÐÐJava ServletºÍJavaServer Pages( Apache Tomcat <= 11.0.10
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://tomcat.apache.org/
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£


¾©¹«Íø°²±¸11010802024551ºÅ