Test Methods ( Detailed Overview )

Here is a list of every test performed by Web Scan Service.

Appended Slash JSP Source Code Disclosure

Remediation Task

Install patch or upgrade version

WASC Classification

Information Disclosure: Information Leakage

Affected Products

This issue may affect different types of products.

Technical Description

This issue affects different types of webservers that supoort Java Server Pages. A malicious user can get source code of a .jsp file by adding a "/" at the end of the filename.

Fix Recommendation

We recommend to upgrade the server to the latest version.