Unify ServletExec AS v3.0C allows remote attackers to read source code for JSP pages via an HTTP request that ends with characters such as ".", or "+", or "%20".
Software | From | Fixed in |
---|---|---|
unify / ewave_servletexec | 3.0 | 3.0.x |
unify / ewave_servletexec | 3.0c | 3.0c.x |