Vulnerability Description
IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Websphere Plugin | All versions |
References
- http://archives.neohapsis.com/archives/bugtraq/2001-01/0446.htmlExploitPatchVendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2001-01/0446.htmlExploitPatchVendor Advisory
FAQ
What is CVE-2001-0312?
CVE-2001-0312 is a vulnerability with a CVSS score of 5.0 (MEDIUM). IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebS...
How severe is CVE-2001-0312?
CVE-2001-0312 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0312?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Websphere Plugin.