Vulnerabilities (CVE)

Filtered by vendor Allaire Subscribe
Total 24 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0760 1 Allaire 1 Coldfusion Server 2024-02-28 10.0 HIGH N/A
Undocumented ColdFusion Markup Language (CFML) tags and functions in the ColdFusion Administrator allow users to gain additional privileges.
CVE-2000-0057 1 Allaire 1 Coldfusion Server 2024-02-28 7.5 HIGH N/A
Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information.
CVE-1999-0757 1 Allaire 1 Coldfusion Server 2024-02-28 2.1 LOW N/A
The ColdFusion CFCRYPT program for encrypting CFML templates has weak encryption, allowing attackers to decrypt the templates.
CVE-2000-0334 1 Allaire 1 Spectra 2024-02-28 2.1 LOW N/A
The Allaire Spectra container editor preview tool does not properly enforce object security, which allows an attacker to conduct unauthorized activities via an object-method that is added to the container object with a publishing rule.