Description
Caucho Technology Resin 2.1.12 allows remote attackers to gain sensitive information and view the contents of the /WEB-INF/ directory via an HTTP request for "WEB-INF..", which is equivalent to "WEB-INF" in Windows.
Remediation
References
Related Vulnerabilities
WordPress Plugin Rotating Testimonial Cross-Site Scripting (1.1)
WordPress Plugin Autoptimize Multiple Vulnerabilities (2.1.0)
WordPress Plugin WP Session Manager SQL Injection (1.2.1)
Jenkins Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-0328)
WordPress Plugin Post PDF Export Local File Inclusion (1.0.1)