Intrusion Prevention

Apache.Tomcat.AJP.Local.File.Inclusion

Description

This indicates an attack attempt to exploit a Local File Inclusion vulnerability in Apache Tomcat.
The vulnerability is due to an error when the vulnerable software handles a maliciously crafted request. A remote attacker may be able to exploit this to gain access to sensitive information.

Affected Products

Apache Tomcat 6
Apache Tomcat 7x Apache Tomcat 8x Apache Tomcat 9x

Impact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems

Recommended Actions

Currently we are unaware of any vendor supplied patch for this issue.

CVE References

CVE-2020-1938