CVE

Id
4311  
CVE No.
CVE-2001-1511  
Status
Candidate  
Description
JRun 3.0 and 3.1 running on JRun Web Server (JWS) and IIS allows remote attackers to read arbitrary JavaServer Pages (JSP) source code via a request URL containing the source filename ending in (1) "jsp%00" or (2) "js%2570".  
Phase
Assigned (20050714)  
Votes
None (candidate not yet proposed)  
Comments