Sun ONE Application Server 7.0 for Windows 2000/XP allows remote attackers to obtain JSP source code via a request that uses the uppercase ".JSP" extension instead of the lowercase .jsp extension.
References
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2003-06-30 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2003-0411
Mitre link : CVE-2003-0411
CVE.ORG link : CVE-2003-0411
JSON object : View
Products Affected
microsoft
- windows_2000
- windows_xp
oracle
- sun_one_application_server
CWE
CWE-178
Improper Handling of Case Sensitivity