Exploit IBM Websphere 5.0/5.1/6.0 - Application Server Web Server Root JSP Source Code Disclosure

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
25420
Проверка EDB
  1. Пройдено
Автор
SPI LABS
Тип уязвимости
REMOTE
Платформа
MULTIPLE
CVE
cve-2005-1112
Дата публикации
2005-04-13
Код:
source: https://www.securityfocus.com/bid/13160/info

A remote JSP source disclosure vulnerability reportedly affects the IBM WebSphere Application Server. This issue is due to a failure of the application to properly handle various requests under certain circumstances.

It should be noted that this issue only arises when the Web serve and application server root directories reside in the same location; this is not the default configuration.

An attacker may leverage this issue to disclose JSP source code, facilitating code theft as well as potential further attacks. 

GET /index.jsp HTTP/1.0
Host: NonExistentHost
 
Источник
www.exploit-db.com

Похожие темы