Allaire JRun 3.0 allows remote attackers to list contents of the WEB-INF directory, and the web.xml file in the WEB-INF directory, via a malformed URL that contains a "."
References
Link | Resource |
---|---|
http://www.allaire.com/handlers/index.cfm?ID=19546&Method=Full | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6008 |
Configurations
Information
Published : 2001-05-02 21:00
Updated : 2017-10-09 18:29
NVD link : CVE-2001-0179
Mitre link : CVE-2001-0179
JSON object : View
CWE
Products Affected
macromedia
- jrun