CVE-2007-2441

Caucho Resin <3.1.0 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-2441. PoCs published by Derek Abdine.

AI-analyzed exploit summary The provided text describes an information disclosure vulnerability in Caucho Resin 3.1.0 on Windows, where improper sanitization of user-supplied data allows access to sensitive information. The example URL demonstrates the issue but does not include functional exploit code.

Description

Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to obtain the system path via certain URLs associated with (1) deploying web applications or (2) displaying .xtp files.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Derek Abdine · textremotewindows
https://www.exploit-db.com/exploits/30037

The provided text describes an information disclosure vulnerability in Caucho Resin 3.1.0 on Windows, where improper sanitization of user-supplied data allows access to sensitive information. The example URL demonstrates the issue but does not include functional exploit code.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Theoretical
Target: Caucho Resin 3.1.0
No auth needed
Prerequisites: Caucho Resin 3.1.0 installed on Microsoft Windows
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/34293
Patch vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1018061
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25286
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1824
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/23985
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/36057

Scores

EPSS 0.0330
EPSS Percentile 87.0%

Details

Status published
Products (1)
caucho_technology/resin < 3.1.0 (2 CPE variants)
Published May 16, 2007
Tracked Since Feb 18, 2026