CVE

Id
23268  
CVE No.
CVE-2006-7164  
Status
Candidate  
Description
SimpleFileServlet in IBM WebSphere Application Server 5.0.1 through 5.0.2.7 on Linux and UNIX does not block certain invalid URIs and does not issue a security challenge, which allows remote attackers to read secure files and obtain sensitive information via certain requests.  
Phase
Assigned (20070320)  
Votes
None (candidate not yet proposed)  
Comments