Описание
Apache Axis 1.0 allows remote attackers to obtain sensitive information by requesting a non-existent WSDL file, which reveals the installation path in the resulting exception message.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | ignored | path disclosure is not a security issue |
| edgy | ignored | end of life |
| feisty | ignored | end of life |
| upstream | needs-triage |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 89%
0.04347
Низкий
5 Medium
CVSS2
Связанные уязвимости
nvd
почти 19 лет назад
Apache Axis 1.0 allows remote attackers to obtain sensitive information by requesting a non-existent WSDL file, which reveals the installation path in the resulting exception message.
debian
почти 19 лет назад
Apache Axis 1.0 allows remote attackers to obtain sensitive informatio ...
CVSS3: 5.3
github
почти 4 года назад
Apache Axis allows Exposure of Sensitive Information to an Unauthorized Actor
EPSS
Процентиль: 89%
0.04347
Низкий
5 Medium
CVSS2