Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Macromedia JRun 3.0 and 3.1 appends the jsessionid to URL requests (a.k.a. rewriting) when client browsers have cookies enabled, which allows remote attackers to obtain session IDs and hijack sessions via HTTP referrer fields or sniffing.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Allaire JRun "JSessionID"信息泄露漏洞
Vulnerability Description
JRun是由Allaire发布的JSP服务器。 该软件存在一个设计错误,可能导致敏感信息泄露。 当用户访问基于JRun的站点时,会得到一个Session ID,而在某些条件下,这个Session ID被附加在URL后面,这可能导致该信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A