296,172
Total vulnerabilities in the database
Blazix before 1.2.2 allows remote attackers to read source code of JSP scripts or list restricted web directories via an HTTP request that ends in a (1) "+" or (2) "" (backslash) character.
CVSS v2:
No CWE or OWASP classifications available.