Allaire JRun Unnecessary JSessionID Appending In URL Vulnerability
|
Bugtraq ID:
|
3665
|
|
Class:
|
Design Error
|
|
CVE:
|
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Dec 06 2001 12:00AM
|
|
Updated:
|
Dec 06 2001 12:00AM
|
|
Credit:
|
Published in Macromedia Product Security Bulletin (MPSB01-18) on Dec 6, 2001.
|
|
Vulnerable:
|
Macromedia JRun 3.1
-
IBM AIX 4.3
-
IBM AIX 4.2
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 95
-
Microsoft Windows 98
-
Microsoft Windows NT 4.0 SP6a
-
Microsoft Windows NT 4.0 SP6
-
Microsoft Windows NT 4.0 SP5
-
Microsoft Windows NT 4.0 SP4
-
Microsoft Windows NT 4.0 SP3
-
Microsoft Windows NT 4.0 SP2
-
Microsoft Windows NT 4.0 SP1
-
Microsoft Windows NT 4.0
-
Redhat Linux 6.1 sparc
-
Redhat Linux 6.1 i386
-
Redhat Linux 6.1 alpha
-
Redhat Linux 6.0 sparc
-
Redhat Linux 6.0 alpha
-
Redhat Linux 6.0
-
SGI IRIX 6.5
-
Sun Solaris 8_sparc
-
Sun Solaris 7.0
Macromedia JRun 3.0
-
IBM AIX 4.3
-
IBM AIX 4.2
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 95
-
Microsoft Windows 98
-
Microsoft Windows NT 4.0 SP6a
-
Microsoft Windows NT 4.0 SP6
-
Microsoft Windows NT 4.0 SP4
-
Microsoft Windows NT 4.0 SP3
-
Microsoft Windows NT 4.0 SP2
-
Microsoft Windows NT 4.0 SP1
-
Microsoft Windows NT 4.0
-
Redhat Linux 6.1 sparc
-
Redhat Linux 6.1 i386
-
Redhat Linux 6.1 alpha
-
Redhat Linux 6.0 sparc
-
Redhat Linux 6.0
-
SGI IRIX 6.5
-
Sun Solaris 7.0
-
Sun Solaris 2.6
|
|
|
|
Not Vulnerable:
|
|
|