CVE-2001-0399: Medium severity caucho technology resin vulnerability
Published May 24, 2001
·Updated
Caucho Resin 1.3b1 and earlier allows remote attackers to read source code for Javabean files by inserting a .jsp before the WEB-INF specifier in an HTTP request.
Affected Software
2 affected components
Caucho Technology Resin=1.2
Caucho Technology Resin=1.3
Remediation
Patch Available
Event History
May 24, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0399?
CVE-2001-0399 is considered to be of high severity due to the potential for remote code disclosure.
2
How do I fix CVE-2001-0399?
To fix CVE-2001-0399, upgrade to a version of Caucho Resin that is newer than 1.3b1.
3
What types of attacks are possible with CVE-2001-0399?
CVE-2001-0399 allows attackers to read source code for Javabean files through crafted HTTP requests.
4
Which versions of Caucho Resin are affected by CVE-2001-0399?
CVE-2001-0399 affects Caucho Resin versions 1.2 and earlier, along with all versions prior to 1.3b2.
5
What is the impact of CVE-2001-0399 on web applications?
The impact of CVE-2001-0399 on web applications includes unauthorized access to source code, potentially leading to further exploitation.