Test Methods ( Detailed Overview )

Here is a list of every test performed by Web Scan Service.

.js%70 Web Application Source Code Disclosure

Remediation Task

Install patch or upgrade version

WASC Classification

Information Disclosure: Information Leakage

Affected Products

This issue may affect different types of products

Technical Description

It is possible to view the source code of a .jsp file by altering the extension name from.jsp to .js%70. As a result the code will not be parsed and it is possible to see the source code in plain text. This may serve a malicious user to plan further attacks.

Fix Recommendation

Several systems are affected so we can only advise you to install th appropriate patches und upgrades for your system.