Unify ServletExec AS v3.0C allows remote attackers to read source code for JSP pages via an HTTP request that ends with characters such as ., or +, or %20.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ewave_servletexec | Unify | 3.0 (including) | 3.0 (including) |
Ewave_servletexec | Unify | 3.0c (including) | 3.0c (including) |