RULE(RULE ID:337919)

Rule General Information
Release Date: 2024-04-15
Rule Name: Caucho Resin Directory Traversal Vulnerability (CVE-2021-44138)
Severity:
CVE ID:
Rule Protection Details
Description: There is a Directory traversal vulnerability in Caucho Resin, as distributed in Resin 4.0.52 - 4.0.56, which allows remote attackers to read files in arbitrary directories via a ; in a pathname within an HTTP request.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Linux, Others
Reference: https://github.com/maybe-why-not/reponame/issues/2
https://www.cybersecurity-help.cz/vdb/SB2022040709
https://cxsecurity.com/cveshow/CVE-2021-44138/
Solutions
Refer to the announcement or patch by the vendor: https://caucho.com/