Filtered by vendor Allaire Subscriptions
Total 24 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2000-0297 1 Allaire 1 Forums 2025-04-03 N/A
Allaire Forums 2.0.5 allows remote attackers to bypass access restrictions to secure conferences via the rightAccessAllForums or rightModerateAllForums variables.
CVE-2000-0382 1 Allaire 1 Clustercats 2025-04-03 N/A
ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection, which may provide sensitive information to the redirected site.
CVE-2000-0538 1 Allaire 1 Coldfusion Server 2025-04-03 N/A
ColdFusion Administrator for ColdFusion 4.5.1 and earlier allows remote attackers to cause a denial of service via a long login password.
CVE-2002-0576 1 Allaire 1 Coldfusion Server 2025-04-03 N/A
ColdFusion 5.0 and earlier on Windows systems allows remote attackers to determine the absolute pathname of .cfm or .dbm files via an HTTP request that contains an MS-DOS device name such as NUL, which leaks the pathname in an error message.