CVE-2004-0281: Medium severity Caucho Resin vulnerability
Published Mar 18, 2004
·Updated
Caucho Technology Resin 2.1.12 allows remote attackers to gain sensitive information and view the contents of the /WEB-INF/ directory via an HTTP request for "WEB-INF..", which is equivalent to "WEB-INF" in Windows.
Affected Software
1 affected component
Caucho Resin=2.1.12
Event History
Mar 18, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0281?
CVE-2004-0281 is classified as a moderate vulnerability impacting sensitive information disclosure.
2
How do I fix CVE-2004-0281?
To fix CVE-2004-0281, ensure that you upgrade to a version of Caucho Technology Resin that is higher than 2.1.12.
3
What is CVE-2004-0281 about?
CVE-2004-0281 allows remote attackers to access and view the contents of the /WEB-INF/ directory via crafted HTTP requests.
4
Which versions of Caucho Technology Resin are affected by CVE-2004-0281?
CVE-2004-0281 affects Caucho Technology Resin version 2.1.12.
5
Can CVE-2004-0281 lead to further exploitation?
Yes, CVE-2004-0281 can lead to further exploitation by allowing attackers to access sensitive application files.