CVE-2001-1084: High severity Macromedia JRun vulnerability
Cross-site scripting vulnerability in Allaire JRun 3.0 and 2.3.3 allows a malicious webmaster to embed Javascript in a request for a .JSP, .shtml, .jsp10, .jrun, or .thtml file that does not exist, which causes the Javascript to be inserted into an error message.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2001-1084?
CVE-2001-1084 is classified as a cross-site scripting vulnerability with a medium severity risk due to potential exploitation by attackers.
How do I fix CVE-2001-1084?
To fix CVE-2001-1084, it is recommended to upgrade to a patched version of Allaire JRun that addresses this vulnerability.
What software is affected by CVE-2001-1084?
CVE-2001-1084 specifically affects Allaire JRun versions 2.3.3 and 3.0.
What kind of attacks can be conducted using CVE-2001-1084?
Attackers can use CVE-2001-1084 to inject malicious JavaScript into error messages displayed by the vulnerable software.
Who can exploit CVE-2001-1084?
CVE-2001-1084 can be exploited by malicious webmasters who can manipulate error responses to include harmful scripts.