CVE-2001-0304: Medium severity caucho technology resin vulnerability
Published Apr 4, 2001
·Updated
Directory traversal vulnerability in Caucho Resin 1.2.2 allows remote attackers to read arbitrary files via a "\.." (dot dot) in a URL request.
Affected Software
1 affected component
Caucho Technology Resin=1.2.2
Remediation
Patch Available
Event History
Apr 4, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0304?
CVE-2001-0304 is considered a high-severity vulnerability due to the potential for unauthorized file access.
2
How do I fix CVE-2001-0304?
To fix CVE-2001-0304, upgrade to a version of Caucho Resin that is not affected by this directory traversal vulnerability.
3
What systems are affected by CVE-2001-0304?
CVE-2001-0304 specifically affects Caucho Resin version 1.2.2.
4
Can CVE-2001-0304 be exploited remotely?
Yes, CVE-2001-0304 can be exploited remotely, allowing attackers to read arbitrary files on the server.
5
What kind of attacks are possible due to CVE-2001-0304?
Exploitation of CVE-2001-0304 could allow attackers to access sensitive files on the web server, posing a significant security risk.