CVE-2001-0326

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/05/2001
Last modified:
03/04/2025

Description

Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the FilePermission.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:oracle:application_server:release_1.0.2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:oracle:oracle8i:8.1.7_r3:*:*:*:*:*:*:*