← Back

CVE-2010-0360

nvd nist
Published: Jan 20, 2010Modified: Apr 23, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Sun Java System Web Server (aka SJWS) 7.0 Update 7 allows remote attackers to overwrite memory locations in the heap, and discover the contents of memory locations, via a malformed HTTP TRACE request that includes a long URI and many empty headers, related to an "overflow." NOTE: this might overlap CVE-2010-0272 and CVE-2010-0273.

Affected (1)

1 product
Java System Web Server
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 7.0 update_7

References (4)

Timeline

No history available yet.