exploit-db-mirror/platforms/unix/local/21073.txt
Offensive Security fffbf04102 Updated
2013-12-03 19:44:07 +00:00

7 lines
No EOL
430 B
Text
Executable file

source: http://www.securityfocus.com/bid/3199/info
When a malformed request is made for a Java Server Page the server displays an error page. The error page contains potentially sensitive information, along with the absolute path of the JSP file on the webserver, which may aid in further attacks.
Jakarta Tomcat can be configured to display an alternate error file. By default it is not.
http://webserver.com/\java.jsp