Unify ServletExec AS v3.0C allows remote attackers to read source code for JSP pages via an HTTP request that ends with characters such as ".", or "+", or "%20".
| Software | From | Fixed in |
|---|---|---|
| unify / ewave_servletexec | 3.0c | 3.0c.x |
| unify / ewave_servletexec | 3.0 | 3.0.x |