CVE-2009-0580 | Apache Tomcat up to 4.1.23 j_security_check j_password information disclosure (EDB-33023 / Nessus ID 43770)
A vulnerability, which was classified as problematic, has been found in Apache Tomcat up to 4.1.23. This issue affects some unknown processing of the file j_security_check. The manipulation of the argument j_password leads to information disclosure.
The identification of this vulnerability is CVE-2009-0580. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.