VYPR
Unrated severityNVD Advisory· Published May 31, 2002· Updated Apr 16, 2026

CVE-2002-0300

CVE-2002-0300

Description

gnujsp 1.0.0 and 1.0.1 allows remote attackers to list directories, read source code of certain scripts, and bypass access restrictions by directly requesting the target file from the gnujsp servlet, which does not work around a limitation of JServ and does not process the requested file.

Affected products

2
  • Gnujsp/Gnujsp2 versions
    cpe:2.3:a:gnujsp:gnujsp:1.0.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:gnujsp:gnujsp:1.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:gnujsp:gnujsp:1.0.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.