java
Redirect vulnerability reported in Sun Java System Web Server
Filed in archive Security by gautam on August 3, 2007
Sun Java System Web Server vulnerability.jpg
Here is another security threat as vulnerability has been figured out in Sun Java System Web Server which can be exploited for carrying out HTTP header injection and HTTP response splitting attacks and at the same time there is a risk of losing sensitive information.

The reason behind the vulnerability is an unspecified error within the redirect feature which can be exploited in case redirect Server Application Function is set to use the url-prefix parameter coupled with escape parameter being set to no or Error directive uses the url-prefix parameter in the obj.conf file. One needs to apply Web Server 6.1 service pack 8 or later and Web Server 7.0 Update 1 or later to counter this problem. Click here for the solution.


Permalink: Redirect vulnerability reported in Sun Java System Web Server
Tags: Sun  Java  System  Web  Server  vulnerability  SunJava  java  java+system 
Trackback: http://publish.creative-weblogging.com/publish/mt-tb.pl/84584
img Addthis img Ask img Blinklist img del.icio.us img Digg img Fark img Facebook img Google img Lycos img Ma.gnolia Add this page to Mister Wong Mr Wong img Netscape img Netvousz img Newsvine img Reddit img StumbleUpon img Slashdot img Tailrank img Technorati img Wink img Yahoo

Vote for Redirect vulnerability reported in Sun Java System Web Server:

  • Currently 8.00/10
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
Rating: 8.00 out of 4 vote(s) cast.
 
Subscribe
Share It
RSSrss
See all blog subscribe options
Google google
What is RSS?
Yahoo! yahoo
Addthis Subscribe using any feed reader!
Bloglines Bloglines
Newsletter

TwitterFollow us on Twitter!