Unrated severityNVD Advisory· Published Dec 31, 2001· Updated Apr 16, 2026
CVE-2001-1513
CVE-2001-1513
Description
Macromedia JRun 3.0 and 3.1 allows remote attackers to obtain duplicate active user session IDs and perform actions as other users via a URL request for the web application directory without the trailing '/' (slash), as demonstrated using ctx.
Affected products
2cpe:2.3:a:macromedia:jrun:3.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:macromedia:jrun:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:macromedia:jrun:3.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.iss.net/security_center/static/7680.phpnvdPatch
- www.macromedia.com/v1/handlers/index.cfmnvdPatchVendor Advisory
- www.securityfocus.com/bid/3600nvd
News mentions
0No linked articles in our index yet.