Unspecified vulnerability in IBM WebSphere Application Server (WAS) before 6.0.2.11, when fileServingEnabled is true, allows remote attackers to obtain JSP source code and other sensitive information via "URIs with special characters."
References
Link | Resource |
---|---|
http://secunia.com/advisories/20732 | Patch Vendor Advisory |
http://secunia.com/advisories/24478 | Vendor Advisory |
http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006876 | |
http://www-1.ibm.com/support/docview.wss?uid=swg21243541 | |
http://www.securityfocus.com/bid/18578 | |
http://www.securityfocus.com/bid/22991 | |
http://www.vupen.com/english/advisories/2006/2482 | Vendor Advisory |
http://www.vupen.com/english/advisories/2007/0970 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-06-27 10:05
Updated : 2019-10-09 22:50
NVD link : CVE-2006-3231
Mitre link : CVE-2006-3231
CVE.ORG link : CVE-2006-3231
JSON object : View
Products Affected
ibm
- websphere_application_server
CWE