First published: Mon Dec 31 2001(Updated: )
Unknown vulnerability in Allaire JRun 3.1 allows remote attackers to directly access the WEB-INF and META-INF directories and execute arbitrary JavaServer Pages (JSP), a variant of CVE-2000-1050.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe JRun | =3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1512 is classified as a high severity vulnerability due to the potential for remote access and execution of JSP files.
To mitigate CVE-2001-1512, ensure that access to the WEB-INF and META-INF directories is restricted and upgrade to a patched version of Allaire JRun.
CVE-2001-1512 affects Allaire JRun version 3.1.
An attacker exploiting CVE-2001-1512 can directly access sensitive directories and execute arbitrary JavaServer Pages.
While CVE-2001-1512 is an older vulnerability, any systems still running Allaire JRun 3.1 may still be at risk if not properly updated.