LOW
BEA WebLogic Server 8.1 up to SP4 and 7.0 up to SP6 allows remote attackers to obtain the source code of JSP pages during certain circumstances related to a "timing window" when a compilation error occurs, aka the "JSP showcode vulnerability."
Published May 19, 2006
2.6
LOWCVSS 2.0
EPSS 1.22%
Description
Affected products
Remediation
References (5)
Change history (0)
No recorded changes yet.