Back to Database
Status published
Medium
CVE-2004-0280
Caucho Technology Resin 2.1.12 allows remote attackers to view JSP...
Vulnerability Description
Caucho Technology Resin 2.1.12 allows remote attackers to view JSP source via an HTTP request to a .jsp file that ends in a "%20" (encoded space character), e.g. index.jsp%20.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2004-0280
Credits & Attribution
No credits recorded in the NVD database.
References
More from caucho technology
View All →CVE-2007-2441
Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier...
Medium
5
CVE-2007-2440
Directory traversal vulnerability in Caucho Resin Professional 3.1.0 and Caucho...
Medium
5
CVE-2007-2439
Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier...
Critical
9.4
CVE-2006-2438
Directory traversal vulnerability in the viewfile servlet in the documentation...
Medium
5
CVE-2006-2437
The viewfile servlet in the documentation package (resin-doc) for Caucho...
Medium
5
Affected Vendor
caucho technology
View all reports →Affected Software
resin
Vulnerable Versions:
2.1.12
Timeline
Official Publish:
March 18th, 2004
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.