Mortbay Jetty Double Slash URI Information Disclosure Vulnerability
Moderate severity
GitHub Reviewed
Published
May 1, 2022
to the GitHub Advisory Database
•
Updated Aug 22, 2023
Description
Published by the National Vulnerability Database
Jan 8, 2008
Published to the GitHub Advisory Database
May 1, 2022
Reviewed
Aug 22, 2023
Last updated
Aug 22, 2023
Mortbay Jetty 6.1.5 and 6.1.6 allows remote attackers to bypass protection mechanisms and read the source of files via multiple
/
(slash) characters in the URI.References