# CVE-2001-1511

## Summary

- **CVE ID:** CVE-2001-1511
- **Severity:** UNKNOWN
- **CVSS Score:** 0.03
- **CWE:** N/A
- **Published:** Jul 14, 2005
- **Last Modified:** Mar 16, 2026

## Description

JRun 3.0 and 3.1 running on JRun Web Server (JWS) and IIS allows remote attackers to read arbitrary JavaServer Pages (JSP) source code via a request URL containing the source filename ending in (1) "jsp%00" or (2) "js%2570".

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://www.macromedia.com/v1/handlers/index.cfm?ID=22288&Method=Full)
- [CNA](http://www.iss.net/security_center/static/7676.php)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.59%
- **EPSS Percentile:** 68.8

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._