CVE-2009-4609 Information
Feb 14, 2021
cve
Description
The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/ as demonstrated by discovering the value of the getPathTranslated variable.
Reference
http://www.ush.it/team/ush/hack-jetty6x7x/jetty-adv.txt
Share on: