PoC Index

CVE-2002-0300

MEDIUM 5.0EPSS 7.3%

gnujsp 1.0.0 and 1.0.1 allows remote attackers to list directories, read source code of certain scripts, and bypass access restrictions by directly requesting the target file from the gnujsp servlet, which does not work around a limitation of JServ and does not process the requested file.

CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
7.33% chance of exploitation in the next 30 days, 94th percentile
Published
2003-04-02
Updated
2024-08-08

ExploitDB entries (1)

References

Related