Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SSIFilter in Allaire JRun 3.1, 3.0 and 2.3.3 allows remote attackers to obtain source code for Java server pages (.jsp) and other files in the web root via an HTTP request for a non-existent SSI page, in which the request's body has an #include statement.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Allaire JRun SSI任意文件源泄漏漏洞
Vulnerability Description
Allaire JRun 3.1,3.0和2.3.3版本的SSIFilter存在漏洞。远程攻击者可以借助对不存在SSI页面的HTTP请求(在该请求体中含有一个#include语句)获得web根目录Java服务器页面(.jsp)和其他文件的源代码。
CVSS Information
N/A
Vulnerability Type
N/A