CVE

Id
3263  
CVE No.
CVE-2001-0446  
Status
Candidate  
Description
IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to the requested URL.  
Phase
Proposed (20010524)  
Votes
MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  
Comments
Frech> XF:ibm-wcs-view-jsp(6308) | CONFIRM:http://www-4.ibm.com/software/webservers/appserv/doc/ | v3024/EfixWeb3024.html | Comments are cryptic.