Allaire JRun 2.3.3, 3.0 and 3.1 running on IIS 4.0 and 5.0, iPlanet, Apache, JRun web server (JWS), and possibly other web servers allows remote attackers to read arbitrary files and directories by appending (1) "%3f.jsp", (2) "?.jsp" or (3) "?" to the requested URL.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T17:48:06.106Z
Reserved: 2005-07-14T00:00:00Z
Link: CVE-2001-1510

No data.

Status : Modified
Published: 2001-12-31T05:00:00.000
Modified: 2024-11-20T23:37:51.470
Link: CVE-2001-1510

No data.