Описание
Mortbay Jetty Discloses JSP Source Code
Unspecified vulnerability in Jetty before 5.1.6 allows remote attackers to obtain source code of JSP pages, possibly involving requests for .jsp files with URL-encoded backslash (%5C
) characters. NOTE: this might be the same issue as CVE-2006-2758.
Пакеты
Наименование
org.mortbay.jetty:jetty
maven
Затронутые версииВерсия исправления
< 5.1.6
5.1.6
Связанные уязвимости
nvd
почти 20 лет назад
Unspecified vulnerability in Jetty before 5.1.6 allows remote attackers to obtain source code of JSP pages, possibly involving requests for .jsp files with URL-encoded backslash ("%5C") characters. NOTE: this might be the same issue as CVE-2006-2758.
debian
почти 20 лет назад
Unspecified vulnerability in Jetty before 5.1.6 allows remote attacker ...