Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-4609

Опубликовано: 13 янв. 2010
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

code not packaged
hardy

not-affected

code not packaged
intrepid

ignored

end of life, was needed
jaunty

not-affected

code not packaged
karmic

not-affected

code not packaged
lucid

not-affected

code not packaged
upstream

needs-triage

Показывать по

EPSS

Процентиль: 58%
0.00373
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
около 16 лет назад

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.

nvd
почти 16 лет назад

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.

debian
почти 16 лет назад

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attacke ...

github
больше 3 лет назад

The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.

EPSS

Процентиль: 58%
0.00373
Низкий

5 Medium

CVSS2