PT-2007-3772 · Caucho · Caucho Resin+1

Published

2007-05-16

·

Updated

2017-07-29

·

CVE-2007-2441

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Caucho Resin Professional versions 3.1.0 and earlier Caucho Resin versions 3.1.0 and earlier
Description The issue allows remote attackers to obtain the system path via certain URLs associated with deploying web applications or displaying .xtp files.
Recommendations For Caucho Resin Professional versions 3.1.0 and earlier, consider restricting access to the URLs associated with deploying web applications or displaying .xtp files until a fix is available. For Caucho Resin versions 3.1.0 and earlier, consider restricting access to the URLs associated with deploying web applications or displaying .xtp files until a fix is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-2441

Affected Products

Caucho Resin
Caucho Resin Professional