PT-2000-1475 · Allaire · Jrun

Publicado

2000-06-22

·

Atualizado

2017-10-10

·

CVE-2000-0540

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Allaire JRun versions 2.3.x
Description The issue allows remote attackers to access arbitrary files or obtain configuration information through JSP sample files. For example, this can be achieved via the 'viewsource.jsp' file.
Recommendations For Allaire JRun versions 2.3.x, remove or restrict access to the JSP sample files to prevent exploitation. As a temporary workaround, consider restricting access to the 'viewsource.jsp' file until a more permanent solution is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2000-0540

Produtos afetados

Jrun