Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Resin HIGH 9.4
CVE-2007-2439

Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to cause a denial of service (device hang) and…

Fix: after 3.1.0
Fix from $1,950 2007-05-16
Resin MEDIUM 5.0
CVE-2007-2440

Directory traversal vulnerability in Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to read c…

Fix: after 3.1.0
Fix from $1,600 2007-05-16
Resin MEDIUM 5.0
CVE-2007-2441

Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to obtain the system path via certain URLs ass…

Fix: after 3.1.0
Fix from $1,600 2007-05-16
Resin HIGH 7.8
CVE-2006-1953

Directory traversal vulnerability in Caucho Resin 3.0.17 and 3.0.18 for Windows allows remote attackers to read arbitrary files via a "C:%5C" (encode…

Patch available
Fix from $1,950 2006-05-17
Resin MEDIUM 5.0
CVE-2006-2437EPSS 7%

The viewfile servlet in the documentation package (resin-doc) for Caucho Resin 3.0.17 and 3.0.18 allows remote attackers to obtain the source code fo…

Patch available
Fix from $1,600 2006-05-17
Resin MEDIUM 5.0
CVE-2006-2438

Directory traversal vulnerability in the viewfile servlet in the documentation package (resin-doc) for Caucho Resin 3.0.17 and 3.0.18 allows remote a…

Patch available
Fix from $1,600 2006-05-17
Resin MEDIUM 5.0
CVE-2004-0280

Caucho Technology Resin 2.1.12 allows remote attackers to view JSP source via an HTTP request to a .jsp file that ends in a "%20" (encoded space char…

No fix yet
Fix from $1,600 2004-11-23
Resin MEDIUM 5.0
CVE-2002-1987

Directory traversal vulnerability in view_source.jsp in Resin 2.1.2 allows remote attackers to read arbitrary files via a "\.." (backslash dot dot).

Mitigation only
Fix from $1,600 2002-12-31
Resin MEDIUM 5.0
CVE-2002-1988

Resin 2.1.1 allows remote attackers to cause a denial of service (memory consumption and hang) via a URL with long variables for non-existent resourc…

Patch available
Fix from $1,600 2002-12-31
Resin MEDIUM 5.0
CVE-2002-1989

Resin 2.1.1 allows remote attackers to cause a denial of service (thread and connection consumption) via multiple URL requests containing the DOS 'CO…

Patch available
Fix from $1,600 2002-12-31
Resin MEDIUM 5.0
CVE-2002-1990

Resin 2.0.5 through 2.1.2 allows remote attackers to reveal physical path information via a URL request for the example Java class file HelloServlet.

Mitigation only
Fix from $1,600 2002-12-31
Resin MEDIUM 5.0
CVE-2002-2090

Caucho Technology Resin server 2.1.1 to 2.1.2 allows remote attackers to obtain server's root path via requests for MS-DOS device names such as lpt9.…

Patch available
Fix from $1,600 2002-12-31
Resin MEDIUM 5.1
CVE-2001-0828

A cross-site scripting vulnerability in Caucho Technology Resin before 1.2.4 allows a malicious webmaster to embed Javascript in a hyperlink that end…

Fix: after 1.2.4
Fix from $1,600 2001-12-06
Resin MEDIUM 5.0
CVE-2001-0399

Caucho Resin 1.3b1 and earlier allows remote attackers to read source code for Javabean files by inserting a .jsp before the WEB-INF specifier in an …

Patch available
Fix from $1,600 2001-06-18
Resin MEDIUM 5.0
CVE-2001-0304

Directory traversal vulnerability in Caucho Resin 1.2.2 allows remote attackers to read arbitrary files via a "\.." (dot dot) in a URL request.

Patch available
Fix from $1,600 2001-05-03
Resin MEDIUM 5.0
CVE-2000-1224

Caucho Technology Resin 1.2 and possibly earlier allows remote attackers to view JSP source via an HTTP request to a .jsp file with certain character…

Mitigation only
Fix from $1,600 2000-11-23