First published: Mon Dec 31 2001(Updated: )
Directory traversal vulnerability in Macromedia JRun Web Server (JWS) 2.3.3, 3.0 and 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTP GET request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe JRun | =3.1 | |
Adobe JRun | =2.3.3 | |
Adobe JRun | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1544 is considered a medium-severity vulnerability due to its potential for unauthorized file access.
To fix CVE-2001-1544, upgrade Macromedia JRun to the latest version that addresses this vulnerability.
CVE-2001-1544 affects Macromedia JRun versions 2.3.3, 3.0, and 3.1.
CVE-2001-1544 allows remote attackers to perform directory traversal attacks to read arbitrary files on the server.
Yes, an attacker can exploit CVE-2001-1544 without authentication, making it a significant security risk.