CVE-2012-2969

Publication date

2012-08-12 16:00:00

Family

certcc

State

PUBLISHED

Description

Caucho Quercus, as distributed in Resin before 4.0.29, allows remote attackers to bypass intended restrictions on filename extensions for created files via a %00 sequence in a pathname within an HTTP request.