CVE-2000-0684
N/A
N/A
Summary
BEA WebLogic 5.1.x does not properly restrict access to the JSPServlet, which could allow remote attackers to compile and execute Java JSP code by directly invoking the servlet on any source file.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://developer.bea.com/alerts/security_000731.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0434.html
- http://www.securityfocus.com/bid/1525
References
- http://developer.bea.com/alerts/security_000731.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0434.html
- http://www.securityfocus.com/bid/1525
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.