Vulnerabilities > CVE-2000-0652 - Unspecified vulnerability in IBM Websphere Application Server 2.0/3.0/3.0.21

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
ibm
exploit available

Summary

IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.

Exploit-Db

descriptionIBM Websphere Application Server 2.0./3.0/3.0.2 .1 Showcode Vulnerability. CVE-2000-0652 . Remote exploits for multiple platform
idEDB-ID:20097
last seen2016-02-02
modified2000-07-24
published2000-07-24
reporterShreeraj Shah
sourcehttps://www.exploit-db.com/download/20097/
titleIBM Websphere Application Server 2.0./3.0/3.0.2.1 - Showcode Vulnerability