CVE-2000-1053: Critical severity Macromedia JRun vulnerability
Published Nov 29, 2000
·Updated
Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet.
Affected Software
1 affected component
Macromedia JRun=2.3.x
Remediation
Event History
Nov 29, 2000
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1053?
CVE-2000-1053 is considered a significant vulnerability due to its ability to allow remote code execution.
2
How do I fix CVE-2000-1053?
To fix CVE-2000-1053, upgrade Allaire JRun to a version that is not affected by this vulnerability.
3
What systems are vulnerable to CVE-2000-1053?
CVE-2000-1053 affects Allaire JRun version 2.3.3.
4
What type of attack does CVE-2000-1053 involve?
CVE-2000-1053 involves a cross-site scripting (XSS) attack that allows remote code execution.
5
Can CVE-2000-1053 impact web application security?
Yes, CVE-2000-1053 can severely impact web application security by allowing arbitrary JSP code execution.