Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Caucho Technology Resin Server Device Name Path Disclosure Vulnerability

Resin discloses the absolute path to the webroot directory to remote attackers when certain MS-DOS device names are requested.

This type of sensitive information may be used in further attacks on the host.

This issue has been reported in Resin running on Microsoft Windows platforms.







 

Privacy Statement
Copyright 2009, SecurityFocus