First published: Mon Jul 24 2000(Updated: )
IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Websphere Application Server | =3.0.21 | |
Ibm Websphere Application Server | =3.0 | |
Ibm Websphere Application Server | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.