CVE

Id
60293  
CVE No.
CVE-2013-0346  
Status
Candidate  
Description
** DISPUTED ** Apache Tomcat 7.x uses world-readable permissions for the log directory and its files, which might allow local users to obtain sensitive information by reading a file. NOTE: One Tomcat distributor has stated "The tomcat log directory does not contain any sensitive information."  
Phase
Assigned (20121206)  
Votes
None (candidate not yet proposed)  
Comments