Vulnerability Name: | CVE-2001-0535 (CCN-6790) | ||||||||
Assigned: | 2001-07-05 | ||||||||
Published: | 2001-07-05 | ||||||||
Updated: | 2008-09-05 | ||||||||
Summary: | Example applications (Exampleapps) in ColdFusion Server 4.x do not properly restrict prevent access from outside the local host's domain, which allows remote attackers to conduct upload, read, or execute files by spoofing the "HTTP Host" (CGI.Host) variable in (1) the "Web Publish" example script, and (2) the "Email" example script. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2001-0535 Source: ALLAIRE Type: Vendor Advisory MPSB01-08 Source: CCN Type: Internet Security Systems Security Alert #92 Remote Vulnerabilities in Macromedia ColdFusion Example Applications Source: CCN Type: Macromedia Web site Macromedia ColdFusion Source: CCN Type: Macromedia Product Security Bulletin MPSB01-08 Best practice recommended to address new security issue in example applications released with ColdFusion Server versions 4.x and earlier. Source: CCN Type: BID-3154 ColdFusion Sample Application Command Execution Vulnerability Source: ISS Type: Vendor Advisory 20010807 Remote Vulnerabilities in Macromedia ColdFusion Example Applications Source: XF Type: UNKNOWN coldfusion-webpublish-execute-code(6790) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Vulnerability Name: | CVE-2001-0535 (CCN-6791) | ||||||||
Assigned: | 2001-07-05 | ||||||||
Published: | 2001-07-05 | ||||||||
Updated: | 2001-07-05 | ||||||||
Summary: | Macromedia ColdFusion version 4.5 ships with several sample programs and scripts used for demonstration purposes. These programs and scripts are accessible only through the local host. A vulnerability in the email example script could allow a remote attacker to bypass access restrictions and view arbitrary files on the server. The attacker could bypass access restrictions by sending an HTTP request with a spoofed Host variable in the HTTP header. Once a successful login has occurred, the attacker can send a specially-crafted URL to view any file on the Web server. | ||||||||
CVSS v3 Severity: | |||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Consequences: | File Manipulation | ||||||||
References: | Source: MITRE Type: CNA CVE-2001-0535 Source: CCN Type: Internet Security Systems Security Alert #92 Remote Vulnerabilities in Macromedia ColdFusion Example Applications Source: CCN Type: Macromedia Web site Macromedia ColdFusion Source: CCN Type: Macromedia Product Security Bulletin MPSB01-08 Best practice recommended to address new security issue in example applications released with ColdFusion Server versions 4.x and earlier. Source: CCN Type: BID-3154 ColdFusion Sample Application Command Execution Vulnerability Source: XF Type: UNKNOWN coldfusion-email-view-files(6791) | ||||||||
Vulnerable Configuration: | Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |