CVE-2002-1992

Buffer overflow in jrun.dll in ColdFusion MX, when used with IIS 4 or 5, allows remote attackers to cause a denial of service in IIS via (1) a long template file name or (2) a long HTTP header.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:macromedia:coldfusion:*:*:*:*:*:*:*:*
cpe:2.3:a:macromedia:coldfusion:*:*:developer:*:*:*:*:*
cpe:2.3:a:macromedia:coldfusion_professional:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:42

Type Values Removed Values Added
References () http://www.iss.net/security_center/static/9460.php - Patch () http://www.iss.net/security_center/static/9460.php - Patch
References () http://www.macromedia.com/v1/handlers/index.cfm?ID=23161 - Patch () http://www.macromedia.com/v1/handlers/index.cfm?ID=23161 - Patch
References () http://www.securityfocus.com/bid/5121 - Patch () http://www.securityfocus.com/bid/5121 - Patch

Information

Published : 2002-12-31 05:00

Updated : 2024-11-20 23:42


NVD link : CVE-2002-1992

Mitre link : CVE-2002-1992

CVE.ORG link : CVE-2002-1992


JSON object : View

Products Affected

macromedia

  • coldfusion_professional
  • coldfusion