Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2003-0411

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2003-0411
Last Modified 25 May 2010 12:18:48
Published 30 Jun 2003 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2003-0411

Summary

Sun ONE Application Server 7.0 for Windows 2000/XP allows remote attackers to obtain JSP source code via a request that uses the uppercase ".JSP" extension instead of the lowercase .jsp extension.

Vulnerable Systems

Application

  • Sun One Application Server 7.0


References

BID - 7709

XF - sunone-jsp-source-disclosure(12093)

CIAC - N-103

SUNALERT - 55221

MISC - http://www.spidynamics.com/sunone_alert.html

SUNALERT - 1000610

BUGTRAQ - 20030526 Multiple Vulnerabilities in Sun-One Application Server


Last Updated: 27 May 2016 10:37:54