CVE
- Id
- 3263
- CVE No.
- CVE-2001-0446
- Status
- Candidate
- Description
- IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to the requested URL.
- Phase
- Proposed (20010524)
- Votes
- MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese
- Comments
- Frech> XF:ibm-wcs-view-jsp(6308) | CONFIRM:http://www-4.ibm.com/software/webservers/appserv/doc/ | v3024/EfixWeb3024.html | Comments are cryptic.