6.4
CVSSv2

CVE-2000-0759

Published: 20/10/2000 Updated: 07/11/2023
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path.

Vulnerable Product Search on Vulmon Subscribe to Product

apache tomcat 3.1

Exploits

source: wwwsecurityfocuscom/bid/1531/info A vulnerability exists in the JSP portion of the Tomcat package, version 31, from the Apache Software Foundation Upon hitting an nonexistent JSP file, too much information is presented by the server as part of the error message This information may be useful to a would be attacker in conducting ...