IBM HTTP Server Source Code...

- AV AC AU C I A
发布: 2001-11-08
修订: 2025-04-13

Due to an input validation error in IBM HTTP Server for the AS/400, it is possible for a remote attacker to make a specially web crafted web request which will display script source code. If a '/' is appended to the end of a request for an existing script, then this will cause the script's source code to be displayed. There is a potential that this issue may result in sensitive information being disclosed to attackers, depending on the contents of the script source code. *It has been reported that the source of this issue is due to WebSphere Application server 3.5.4. However this has not yet been confirmed by the vendor.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息