Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2001-1510
Description:Allaire JRun 2.3.3, 3.0 and 3.1 running on IIS 4.0 and 5.0, iPlanet, Apache, JRun web server (JWS), and possibly other web servers allows remote attackers to read arbitrary files and directories by appending (1) "%3f.jsp", (2) "?.jsp" or (3) "?" to the requested URL.
Test IDs: 1.3.6.1.4.1.25623.1.0.10814  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2001-1510
Allaire Security Bulletin: MPSB01-13
http://www.macromedia.com/v1/handlers/index.cfm?ID=22262&Method=Full
BugTraq ID: 3592
http://www.securityfocus.com/bid/3592
Bugtraq: 20011128 def-2001-32 (Google Search)
http://online.securityfocus.com/archive/1/242843/2002-07-27/2002-08-02/2
Bugtraq: 20011129 RE: def-2001-32 - Allaire JRun directory browsing vulnerability (Google Search)
http://online.securityfocus.com/archive/1/243203
Bugtraq: 20011203 Allaire JRun ACL bypassing/soure disclosure vulnerability (Google Search)
http://www.securityfocus.com/archive/1/243636
XForce ISS Database: allaire-jrun-view-directory(7623)
http://www.iss.net/security_center/static/7623.php




© 1998-2025 E-Soft Inc. All rights reserved.