7.5
CVSSv2

CVE-2000-0629

Published: 12/07/2000 Updated: 10/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The default configuration of the Sun Java web server 2.0 and previous versions allows remote malicious users to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling the JSP compiler servlet.

Vulnerable Product Search on Vulmon Subscribe to Product

sun java system web server 1.1.3

sun java system web server 2.0