Summary
Requesting the URI /caucho-status gives information about the currently running Resin java servlet container.
Solution
If you don't use this feature, set the content of the '<caucho-status>' element to 'false' in the resin.conf file.
Severity
Classification
-
CVSS Base Score: 7.8
AV:N/AC:L/Au:N/C:N/I:N/A:C
Related Vulnerabilities
- Adobe Acrobat Sandbox Bypass Vulnerability - Aug14 (Windows)
- Adobe Acrobat and Reader PDF Handling Code Execution Vulnerability (Mac OS X)
- Adobe AIR Multiple Vulnerabilities(APSB14-24)-(Mac OS X)
- Adobe Acrobat Multiple Vulnerabilities-01 Dec14 (Windows)
- Adobe Air Multiple Vulnerabilities - December12 (Mac OS X)