pen-test
[Top] [All Lists]

Apache Tomcat 5.5.9 pen-test questions.

To: pen-test@securityfocus.com
Subject: Apache Tomcat 5.5.9 pen-test questions.
From: rlvi_2001@yahoo.com
Date: 19 Nov 2006 20:29:00 -0000
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Resent-date: Sun, 19 Nov 2006 15:17:37 -0700 (MST)
Resent-from: pen-test-return-1078483000@securityfocus.com
Resent-message-id: <20061119221737.87A6615F327@outgoing2.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Hi everybody. I am wondering if a server only has port 80 and 22 open. It's 
using jsp for design.It's running Openssh on port 22. Is there anyways to 
penetrate this server? Also, i am able to find an injection on another site, 
but i am not able to extract the Table name, and i couldn't do anything about 
it. I tried to use manual guess the table name, but no goal. Could anybody tell 
me why this is happening? Thank you very much. This site is running with Apache 
2.2. Thank you very much. Your reply will be greatly appriciated. 

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>