- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 25420
- Проверка EDB
-
- Пройдено
- Автор
- SPI LABS
- Тип уязвимости
- REMOTE
- Платформа
- MULTIPLE
- CVE
- cve-2005-1112
- Дата публикации
- 2005-04-13
Код:
source: https://www.securityfocus.com/bid/13160/info
A remote JSP source disclosure vulnerability reportedly affects the IBM WebSphere Application Server. This issue is due to a failure of the application to properly handle various requests under certain circumstances.
It should be noted that this issue only arises when the Web serve and application server root directories reside in the same location; this is not the default configuration.
An attacker may leverage this issue to disclose JSP source code, facilitating code theft as well as potential further attacks.
GET /index.jsp HTTP/1.0
Host: NonExistentHost
- Источник
- www.exploit-db.com