Advertisement

05.02.2008 at 08:39AM PDT, ID: 23371952
[x]
Attachment Details

How do I remove cal2.jsp from Tomcat

Asked by bbogle2007 in Email Servers, Novell Netware Network Software, Java Editors & IDEs

Tags:

I have a high vulnerability on my PCI scan regarding Tomcat.  The error is as follows:
Severity: High
Description: Tomcat includes an example JSP application, cal2.jsp, that is susceptible to a cross site scripting attack. An attacker could exploit this vulnerability to execute arbitrary code in a user's browser.  
Remediation: Upgrade to the most recent version of Tomcat or remove the sample applications.  

Does anyone know how I can remove the example JSP application safely?Start Free Trial
[+][-]05.03.2008 at 08:51AM PDT, ID: 21492723

View this solution now by starting your 7-day free trial. Setting up your free trial is quick, easy, and secure. We will return you to this solution, unlocked, when you're done.

 

About this solution

Zones: Email Servers, Novell Netware Network Software, Java Editors & IDEs
Tags: Tomcat
Sign Up Now!
Solution Provided By: jar3817
Participating Experts: 1
Solution Grade: A
 
 
[+][-]05.24.2008 at 10:38AM PDT, ID: 21639729

Experts Exchange has a courteous staff of administrators who help members get the most out of the website by means of administrative comments like this one.

Start your 7-day free trial to view this Administrative Comment or ask the Experts your question.

 
[+][-]06.01.2008 at 05:54AM PDT, ID: 21686831

Experts Exchange has a courteous staff of administrators who help members get the most out of the website by means of administrative comments like this one.

Start your 7-day free trial to view this Administrative Comment or ask the Experts your question.

 
[+][-]06.02.2008 at 06:12AM PDT, ID: 21691609

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
 
Loading Advertisement...
20080716-EE-VQP-32 / EE_QW_2_20070628