Vulnerability Description
Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide malicious activities.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sun | One Application Server | 7.0 |
References
- http://marc.info/?l=bugtraq&m=105409846029475&w=2
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert%2F55221&zone_32=categoryPatchVendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-77-1000610.1-1
- http://www.ciac.org/ciac/bulletins/n-103.shtmlPatchVendor Advisory
- http://www.securityfocus.com/bid/7711PatchVendor Advisory
- http://www.spidynamics.com/sunone_alert.html
- http://marc.info/?l=bugtraq&m=105409846029475&w=2
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert%2F55221&zone_32=categoryPatchVendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-77-1000610.1-1
- http://www.ciac.org/ciac/bulletins/n-103.shtmlPatchVendor Advisory
- http://www.securityfocus.com/bid/7711PatchVendor Advisory
- http://www.spidynamics.com/sunone_alert.html
FAQ
What is CVE-2003-0412?
CVE-2003-0412 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide malicious activities.
How severe is CVE-2003-0412?
CVE-2003-0412 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-0412?
Check the references section above for vendor advisories and patch information. Affected products include: Sun One Application Server.