CVE-2001-1510

CVSS 5.0 - MEDIUM
Description

Allaire JRun 2.3.3, 3.0 and 3.1 running on IIS 4.0 and 5.0, iPlanet, Apache, JRun web server (JWS), and possibly other web servers allows remote attackers to read arbitrary files and directories by appending (1) "%3f.jsp", (2) "?.jsp" or (3) "?" to the requested URL.

Affected Products
3
Vendor Product Version
macromedia jrun 2.3.3
macromedia jrun 3.0
macromedia jrun 3.1
Weakness Types
NVD-CWE-Other
CVE Information
CVE ID:
CVE-2001-1510
Published:
2001-12-31
Modified:
2026-04-16
CVSS Score:
5.0
Severity:
MEDIUM
Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N
Affected Vendors
macromedia
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL