Total vulnerabilities in the database
IBM WebSphere allows remote attackers to read source code for executable web files by directly calling the default InvokerServlet using a URL which contains the "/servlet/file" string.
Software | From | Fixed in |
---|---|---|
ibm / websphere_application_server | 3.0.21 | 3.0.21.x |
ibm / websphere_application_server | 3.0 | 3.0.x |
ibm / websphere_application_server | 2.0 | 2.0.x |