PT-2001-1539 · Netscape+1 · Netscape Enterprise Server+1

Published

2001-04-04

·

Updated

2008-09-05

·

CVE-2001-0312

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM WebSphere plugin for Netscape Enterprise server (affected versions not specified)
Description The issue allows remote attackers to read source code for JSP files via an HTTP request that contains a host header referencing a host not in WebSphere's host aliases list, bypassing WebSphere processing.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-0312

Affected Products

Ibm Websphere
Netscape Enterprise Server