Vulnerability Details CVE-2001-0926
SSIFilter in Allaire JRun 3.1, 3.0 and 2.3.3 allows remote attackers to obtain source code for Java server pages (.jsp) and other files in the web root via an HTTP request for a non-existent SSI page, in which the request's body has an #include statement.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.021
EPSS Ranking 83.4%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2001-0926
-
cpe:2.3:a:macromedia:jrun:2.3.3
-
cpe:2.3:a:macromedia:jrun:3.0
-
cpe:2.3:a:macromedia:jrun:3.1