Security Advisory

CVE-2000-1050

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2001-01-22 05:00:00
Last updated 2024-08-08 05:45:36
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra "/" in the beginning of the request (aka the "extra leading slash").