5
CVSSv2

CVE-2004-0281

Published: 23/11/2004 Updated: 12/06/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Caucho Technology Resin 2.1.12 allows remote malicious users to gain sensitive information and view the contents of the /WEB-INF/ directory via an HTTP request for "WEB-INF..", which is equivalent to "WEB-INF" in Windows.

Vulnerable Product Search on Vulmon Subscribe to Product

caucho resin 2.1.12

Exploits

source: wwwsecurityfocuscom/bid/9617/info It has been reported that Resin may be prone to an information disclosure vulnerability that may allow an attacker to disclose directory listings by passing malicious data via a URI parameter The issue has been reported to present itself on Windows NT/2000 systems running Apache 1329 and Resin ...