CVE-2007-2353
Apache Axis 1.0 allows remote attackers to obtain sensitive information by requesting a non-existent WSDL file, which reveals the installation path in the resulting exception message.
- Affected products
- Apache Axis, Debian
- Apache Axis
- = 1.0
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 27.7% (98th percentile)
- Weakness
- CWE-200
- NVD status
- Modified
- Published
- 2007-04-30
CVE-2007-2353 at NVD
1 known exploit for CVE-2007-2353
Proof-of-concept code and exploit modules indexed by Sploitus