CVE-2000-0760

The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apache:tomcat:3.0:*:*:*:*:*:*:*
cpe:2.3:a:apache:tomcat:3.1:*:*:*:*:*:*:*

History

07 Nov 2023, 01:55

Type Values Removed Values Added
References
  • {'url': 'http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26date%3D2000-07-15%26msg%3DPine.SUN.3.96.1000719235404.24004A-100000@grex.cyberspace.org', 'name': '20000719 [LoWNOISE] Snoop Servlet (Tomcat 3.1 and 3.0)', 'tags': ['Exploit', 'Vendor Advisory'], 'refsource': 'BUGTRAQ'}
  • () http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26date%3D2000-07-15%26msg%3DPine.SUN.3.96.1000719235404.24004A-100000%40grex.cyberspace.orgĀ -

Information

Published : 2000-10-20 04:00

Updated : 2023-12-10 10:17


NVD link : CVE-2000-0760

Mitre link : CVE-2000-0760

CVE.ORG link : CVE-2000-0760


JSON object : View

Products Affected

apache

  • tomcat