Filtered by vendor Allaire Subscriptions
Total 24 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2000-0057 1 Allaire 1 Coldfusion Server 2025-04-03 N/A
Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information.
CVE-2000-0410 1 Allaire 1 Coldfusion Server 2025-04-03 N/A
ColdFusion Server 4.5.1 allows remote attackers to cause a denial of service by making repeated requests to a CFCACHE tagged cache file that is not stored in memory.
CVE-2001-1120 1 Allaire 1 Coldfusion Server 2025-04-03 N/A
Vulnerabilities in ColdFusion 2.0 through 4.5.1 SP 2 allow remote attackers to (1) read or delete arbitrary files, or (2) overwrite ColdFusion Server templates.
CVE-2002-0576 1 Allaire 1 Coldfusion Server 2025-04-03 N/A
ColdFusion 5.0 and earlier on Windows systems allows remote attackers to determine the absolute pathname of .cfm or .dbm files via an HTTP request that contains an MS-DOS device name such as NUL, which leaks the pathname in an error message.