First published: Fri Mar 22 2002(Updated: )
Directory traversal vulnerability in source.jsp of Apache Tomcat before 3.1 allows remote attackers to read arbitrary files via a `..` (dot dot) in the argument to source.jsp.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
maven/org.apache.tomcat:tomcat | <=3.1 | |
Apache Tomcat | <=3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1210 is classified as a high severity vulnerability due to its potential to allow remote attackers to read arbitrary files on the server.
To mitigate CVE-2000-1210, upgrade to Apache Tomcat version 3.1 or later, which does not have this directory traversal vulnerability.
CVE-2000-1210 affects all versions of Apache Tomcat prior to 3.1.
CVE-2000-1210 is a directory traversal vulnerability that allows unauthorized access to files on the server.
Yes, CVE-2000-1210 can be exploited remotely by attackers using crafted requests to access sensitive files.