漏洞类别:Web server漏洞等级:
漏洞信息
Resin is a servlet and JSP engine that supports java and javascript. If an HTTP request is appended with certain characters, ServletExec returns the source code of JSP files. This vulnerability is dependent on the platform that Resin is running on.
漏洞危害
Successful exploitation of this vulnerability could lead to the disclosure of sensitive information contained within JSP pages.
解决方案
For the latest information or new releases, check Caucho's Web site.
0day
文章评论