CVE-2000-0540: Medium severity Macromedia JRun vulnerability
Published Jun 22, 2000
·Updated
JSP sample files in Allaire JRun 2.3.x allow remote attackers to access arbitrary files (e.g. via viewsource.jsp) or obtain configuration information.
Affected Software
1 affected component
Macromedia JRun=2.3
Remediation
Patch Available
Event History
Jun 22, 2000
CVE Published
04:00 AM
Oct 13, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0540?
CVE-2000-0540 is classified as a high severity vulnerability due to its potential for exposing sensitive files and configuration information to remote attackers.
2
How do I fix CVE-2000-0540?
To fix CVE-2000-0540, upgrade to a newer version of Allaire JRun that is not affected by this vulnerability.
3
What is the impact of CVE-2000-0540?
CVE-2000-0540 allows remote attackers to access arbitrary files and sensitive configuration data on the server.
4
Which versions of Allaire JRun are affected by CVE-2000-0540?
CVE-2000-0540 affects Allaire JRun version 2.3.x.
5
What techniques can attackers use to exploit CVE-2000-0540?
Attackers can exploit CVE-2000-0540 by accessing JSP sample files such as viewsource.jsp to enumerate and read server files.