Loading vulnerability details…
CVSS v3.1
N/A
EPSS
1.62%
Published
Aug 12, 2012
Modified
Apr 28, 2026
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Caucho Quercus, as distributed in Resin before 4.0.29, does not properly handle unspecified characters in the names of variables, which has unknown impact and remote attack vectors, related to an "HTTP Parameter Contamination" issue.
Weaknesses (CWE)
Affected Products (88)
References (8)
...and 38 more