PT-2001-1539 · Netscape+1 · Netscape Enterprise Server+1

Publicado

2001-04-04

·

Atualizado

2008-09-05

·

CVE-2001-0312

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM WebSphere plugin for Netscape Enterprise server (affected versions not specified)
Description The issue allows remote attackers to read source code for JSP files via an HTTP request that contains a host header referencing a host not in WebSphere's host aliases list, bypassing WebSphere processing.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2001-0312

Produtos afetados

Ibm Websphere
Netscape Enterprise Server