Vulnerabilities > CVE-2000-1224 - Unspecified vulnerability in Caucho Technology Resin 1.1.5/1.2

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
caucho-technology
exploit available

Summary

Caucho Technology Resin 1.2 and possibly earlier allows remote attackers to view JSP source via an HTTP request to a .jsp file with certain characters appended to the file name, such as (1) "..", (2) "%2e..", (3) "%81", (4) "%82", and others.

Vulnerable Configurations

Part Description Count
Application
Caucho_Technology
2

Exploit-Db

descriptionCaucho Technology Resin 1.2 JSP Source Disclosure Vulnerability. CVE-2000-1224 . Remote exploit for jsp platform
idEDB-ID:20429
last seen2016-02-02
modified2000-11-23
published2000-11-23
reporterbenjurry
sourcehttps://www.exploit-db.com/download/20429/
titleCaucho Technology Resin 1.2 JSP Source Disclosure Vulnerability