NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 81041 | CVE-2002-2090 | Caucho Technology Resin server 2.1.1 to 2.1.2 allows remote attackers to obtain server"s root path via requests for MS-DOS device names such as lpt9.xtp. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 70731 | CVE-2004-0280 | Caucho Technology Resin 2.1.12 allows remote attackers to view JSP source via an HTTP request to a .jsp file that ends in a "%20" (encoded space character), e.g. index.jsp%20. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 70732 | CVE-2004-0281 | Caucho Technology Resin 2.1.12 allows remote attackers to gain sensitive information and view the contents of the /WEB-INF/ directory via an HTTP request for "WEB-INF..", which is equivalent to "WEB-INF" in Windows. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 77456 | CVE-2000-1224 | Caucho Technology Resin 1.2 and possibly earlier allows remote attackers to view JSP source via an HTTP request to a .jsp file with certain characters appended to the file name, such as (1) .., (2) %2e.., (3) %81, (4) %82, and others. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 54608 | CVE-2007-2441 | Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to obtain the system path via certain URLs associated with (1) deploying web applications or (2) displaying .xtp files. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 15364 of 17672, showing 5 records out of 88360 total, starting on record 76816, ending on 76820