Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-4609

Опубликовано: 13 янв. 2010
Источник: ubuntu
Приоритет: medium
CVSS2: 5

Описание

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

code not packaged
hardy

not-affected

code not packaged
intrepid

ignored

end of life, was needed
jaunty

not-affected

code not packaged
karmic

not-affected

code not packaged
lucid

not-affected

code not packaged
upstream

needs-triage

Показывать по

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 16 лет назад

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.

nvd
около 16 лет назад

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.

debian
около 16 лет назад

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attacke ...

github
почти 4 года назад

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.

5 Medium

CVSS2