First published: Thu Jun 22 2000(Updated: )
JSP sample files in Allaire JRun 2.3.x allow remote attackers to access arbitrary files (e.g. via viewsource.jsp) or obtain configuration information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe JRun | =2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0540 is classified as a high severity vulnerability due to its potential for exposing sensitive files and configuration information to remote attackers.
To fix CVE-2000-0540, upgrade to a newer version of Allaire JRun that is not affected by this vulnerability.
CVE-2000-0540 allows remote attackers to access arbitrary files and sensitive configuration data on the server.
CVE-2000-0540 affects Allaire JRun version 2.3.x.
Attackers can exploit CVE-2000-0540 by accessing JSP sample files such as viewsource.jsp to enumerate and read server files.