peter bassill · operator
$ cve CVE-2007-2441 JSON

CVE-2007-2441 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 3.3% (pctl 88)

Patch early

A public exploit exists.

Description

Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to obtain the system path via certain URLs associated with (1) deploying web applications or (2) displaying .xtp files.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS3.27% — more likely to be exploited than 88% of all CVEs
On CISA KEVno
Public exploityes
Published2007-05-16
Last modified2026-06-16

Affected (1)

VendorProduct
caucho technologyresin

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD