CVE-2017-12615: Apache Tomcat Servers - Remote Code Execution

HoneyLabs honeypots recorded 8 probes matching CVE-2017-12615 from 1 distinct source IP addresses in the last 7 days. Severity is rated high.

This CVE is on CISA's Known Exploited Vulnerabilities list.

Request paths that identify it

  • /poc.jsp?cmd=cat+%2Fetc%2Fpasswd

Addresses probing it

Source IPProbesNetworkCountry
93.123.109.2148Techoff Srv LimitedBulgaria

Networks it comes from

ASNOrganisationProbesSource IPs
AS48090Techoff Srv Limited81

Captured requests

  • /poc.jsp?cmd=cat+%2Fetc%2Fpasswd

CVE report

CVE report

Open a specific CVE from the CVE tracker.