IBM WebSphere Application Server (WAS) 5.1.1.9 and earlier allows remote attackers to obtain JSP source code and other sensitive information via "a specific JSP URL."
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2007/0970 | vdb entry |
http://secunia.com/advisories/24478 | third party advisory patch vendor advisory |
http://www-1.ibm.com/support/docview.wss?uid=swg24011720 | vendor advisory |
http://www-1.ibm.com/support/docview.wss?uid=swg21243541 | patch vendor advisory |
http://www.securityfocus.com/bid/22991 | vdb entry |