Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
JRun 4.0 does not properly generate and handle the JSESSIONID, which allows remote attackers to perform a session fixation attack and hijack a user's HTTP session.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Macromedia JRun管理平台会话补丁及跨站脚本漏洞
Vulnerability Description
Macromedia JRun是一款Macromedia公司开发的Java应用服务器,提供快速可靠的J2EE兼容平台。 Macromedia JRun 4.0管理平台存在跨站脚本及会话固定错误,远程攻击者可以利用这个漏洞获得敏感信息或未授权访问应用系统。 目前没有详细漏洞细节提供。JRun 3.x不存在此漏洞。
CVSS Information
N/A
Vulnerability Type
N/A