Caucho Technology Resin 2.1.12 allows remote attackers to view JSP source via an HTTP request to a .jsp file that ends in a %20 (encoded space character), e.g. index.jsp%20.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Resin | Caucho_technology | 2.1.12 (including) | 2.1.12 (including) |