Описание
Directory traversal vulnerability in Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to read certain files via a .. (dot dot) in a URI containing a "\web-inf" sequence.
Directory traversal vulnerability in Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to read certain files via a .. (dot dot) in a URI containing a "\web-inf" sequence.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-2440
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34296
- http://osvdb.org/36058
- http://secunia.com/advisories/25286
- http://www.caucho.com/resin-3.1/changes/changes.xtp
- http://www.rapid7.com/advisories/R7-0029.jsp
- http://www.securityfocus.com/bid/23985
- http://www.securitytracker.com/id?1018061
- http://www.vupen.com/english/advisories/2007/1824
EPSS
Процентиль: 93%
0.1041
Средний
CVE ID
Связанные уязвимости
nvd
больше 18 лет назад
Directory traversal vulnerability in Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to read certain files via a .. (dot dot) in a URI containing a "\web-inf" sequence.
EPSS
Процентиль: 93%
0.1041
Средний