Git Product home page Git Product logo

im_http_service's People

Contributors

gtouchgogo avatar laserhenry avatar list-processing avatar may-liu avatar

Stargazers

 avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar

im_http_service's Issues

Tomcat漏洞问题

我在去年7月份为公司内网部署了您发布的startalk即时通讯工具,最近出现了一个问题,我们内网在进行安全扫描时,发现了您的Tomcat服务器爆漏洞了,目标服务器是在8081端口所在的Tomcat服务器。

这个漏洞就是Apache-Tomcat-Ajp漏洞(CVE-2020-1938),对应的Tomcat版本应该是8.5.34,这个漏洞在小于8.0.51版本时会出现。

我们目前通过注释掉server.xml中的ajp服务所在的配置信息,先行规避了。希望后续的程序发布中,能升级下Tomcat版本,或者规避下漏洞信息。

感谢

参考地址:https://cnblogs.com/L0ading/p/12341112.html

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.