First published: Fri May 09 2008(Updated: )
Unspecified vulnerability in Sun Java System Application Server 7 2004Q2 before Update 6, Web Server 6.1 before SP8, and Web Server 7.0 before Update 1 allows remote attackers to obtain source code of JSP files via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun ONE Application Server | <=7.0 | |
Sun Java System Web Server | <=6.1 | |
Sun Java System Web Server | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2120 has a medium severity rating due to its potential for remote code exposure.
To fix CVE-2008-2120, you should upgrade to the latest version of the affected software, either Sun Java System Application Server or Sun Java System Web Server.
CVE-2008-2120 affects Sun Java System Application Server 7 2004Q2 before Update 6, Web Server 6.1 before SP8, and Web Server 7.0 before Update 1.
CVE-2008-2120 allows remote attackers to access the source code of JSP files through unspecified vectors.
Yes, CVE-2008-2120 remains a threat unless the affected software has been updated or patched accordingly.