Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Oracle iPlanet Web Server (formerly Sun Java System Web Server or Sun ONE Web Server) 6.1 before SP12, and 7.0 through Update 6, when running on Windows, allows remote attackers to read arbitrary JSP files via an alternate data stream syntax, as demonstrated by a .jsp::$DATA URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun Java System Web Server .jsp文件信息泄露漏洞
Vulnerability Description
Oracle Sun Java System Web Server是美国甲骨文(Oracle)公司的一款专为大中型业务应用程序开发的Web服务器。 Sun Java System Web Server在处理对Java Server页面的请求时存在信息泄露漏洞。远程攻击者可以在所请求文件的扩展名后附加::$DATA来读取JSP资源的内容。
CVSS Information
N/A
Vulnerability Type
N/A