CVE-2001-0326 Information
Feb 14, 2021
cve
Description
Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the ALL FILES FilePermission.
Reference
http://archives.neohapsis.com/archives/bugtraq/2001-02/0255.html http://www.osvdb.org/5706 https://exchange.xforce.ibmcloud.com/vulnerabilities/6438
Share on: