File Source Exposure in Mortbay Jetty Solutions
CVE-2007-6672

Currently unrated

Key Information:

Status
Vendor
CVE Published:
8 January 2008

What is CVE-2007-6672?

Mortbay Jetty versions 6.1.5 and 6.1.6 are susceptible to a vulnerability that permits remote attackers to bypass security mechanisms, enabling them to access the source code of files by manipulating the URI with multiple slash (/) characters. This flaw can be exploited by specially crafted requests, making sensitive information accessible without proper authorization.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.