Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to obtain the system path via certain URLs associated with (1) deploying web applications or (2) displaying .xtp files.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:30
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/36057 - | |
References | () http://secunia.com/advisories/25286 - Patch, Vendor Advisory | |
References | () http://www.caucho.com/resin-3.1/changes/changes.xtp - Patch | |
References | () http://www.rapid7.com/advisories/R7-0030.jsp - Patch | |
References | () http://www.securityfocus.com/bid/23985 - | |
References | () http://www.securitytracker.com/id?1018061 - Patch | |
References | () http://www.vupen.com/english/advisories/2007/1824 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/34293 - |
Information
Published : 2007-05-16 19:28
Updated : 2024-11-21 00:30
NVD link : CVE-2007-2441
Mitre link : CVE-2007-2441
CVE.ORG link : CVE-2007-2441
JSON object : View
Products Affected
caucho_technology
- resin
CWE