Описание
Apache Axis 1.0 allows remote attackers to obtain sensitive information by requesting a non-existent WSDL file, which reveals the installation path in the resulting exception message.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | ignored | path disclosure is not a security issue |
| edgy | ignored | end of life |
| feisty | ignored | end of life |
| upstream | needs-triage |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 98%
0.27651
Средний
5 Medium
CVSS2
Связанные уязвимости
nvd
больше 19 лет назад
Apache Axis 1.0 allows remote attackers to obtain sensitive information by requesting a non-existent WSDL file, which reveals the installation path in the resulting exception message.
debian
больше 19 лет назад
Apache Axis 1.0 allows remote attackers to obtain sensitive informatio ...
CVSS3: 5.3
github
больше 4 лет назад
Apache Axis allows Exposure of Sensitive Information to an Unauthorized Actor
EPSS
Процентиль: 98%
0.27651
Средний
5 Medium
CVSS2