VYPR
High severityNVD Advisory· Published Aug 12, 2012· Updated Apr 29, 2026

CVE-2012-2966

CVE-2012-2966

Description

Caucho Quercus, as distributed in Resin before 4.0.29, overwrites entries in the SERVER superglobal array on the basis of POST parameters, which has unspecified impact and remote attack vectors.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
com.caucho:resinMaven
< 4.0.294.0.29

Affected products

12
  • cpe:2.3:a:caucho:resin:*:*:*:*:*:*:*:*+ 11 more
    • cpe:2.3:a:caucho:resin:*:*:*:*:*:*:*:*range: <=4.0.28
    • cpe:2.3:a:caucho:resin:2.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.0.5:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.1.3:*:*:*:*:*:*:*
    • cpe:2.3:a:caucho:resin:2.1.4:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

8

News mentions

0

No linked articles in our index yet.