CVE-2021-44138

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
04/04/2022
Last modified:
11/04/2022

Description

There is a Directory traversal vulnerability in Caucho Resin, as distributed in Resin 4.0.52 - 4.0.56, which allows remote attackers to read files in arbitrary directories via a ; in a pathname within an HTTP request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:caucho:resin:*:*:*:*:*:*:*:* 4.0.52 (including) 4.0.56 (including)


References to Advisories, Solutions, and Tools