PT-2000-1435 · Ibm · Ibm Websphere Server
CVE-2000-0497
·
Publicado
2000-06-08
·
Atualizado
2024-01-26
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM WebSphere server version 3.0.2
Description
The issue allows a remote attacker to view the source code of a JSP program. This can be achieved by requesting a URL that provides the JSP extension in upper case.
Recommendations
For IBM WebSphere server version 3.0.2, consider restricting access to JSP files or modifying the server configuration to handle JSP extensions in a case-insensitive manner until a fix is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Websphere Server