Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
adobe coldfusion 6.1 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2007-1278
Unspecified vulnerability in the IIS connector in Adobe JRun 4.0 Updater 6, and ColdFusion MX 6.1 and 7.0 Enterprise, when using Microsoft IIS 6, allows remote malicious users to cause a denial of service via unspecified vectors, involving the request of a file in the JRun web ro...
Adobe Coldfusion 6.1
Adobe Jrun 4.0
Adobe Coldfusion 7.0
4.3
CVSSv2
CVE-2011-0734
Cross-site scripting (XSS) vulnerability in Adobe ColdFusion prior to 9.0.1 CHF1 allows remote malicious users to inject arbitrary web script or HTML via an id parameter containing a JavaScript onLoad event handler for a BODY element, related to a "tag body" attack. NOT...
Adobe Coldfusion 7.0.2
Adobe Coldfusion 9.0
Adobe Coldfusion 9.0.1
Adobe Coldfusion
Adobe Coldfusion 6.1
Adobe Coldfusion 6.0
Adobe Coldfusion 8.1
Adobe Coldfusion 8.0
Adobe Coldfusion 7.0
Adobe Coldfusion 8.0.1
Adobe Coldfusion 7.0.1
Adobe Coldfusion 5.0
Adobe Coldfusion 4.5
4.3
CVSSv2
CVE-2011-0736
Adobe ColdFusion 9.0.1 CHF1 and previous versions, when a web application is configured to use a DBMS, allows remote malicious users to obtain potentially sensitive information about the database structure via an id=- query to a .cfm file. NOTE: the vendor disputes the significan...
Adobe Coldfusion 7.0.2
Adobe Coldfusion 8.0
Adobe Coldfusion 9.0
Adobe Coldfusion 6.0
Adobe Coldfusion 7.0
Adobe Coldfusion 5.0
Adobe Coldfusion 6.1
Adobe Coldfusion 7.0.1
Adobe Coldfusion 8.0.1
Adobe Coldfusion
Adobe Coldfusion 8.1
Adobe Coldfusion 9.0.1
Adobe Coldfusion 4.5
4.3
CVSSv2
CVE-2011-0735
Cross-site scripting (XSS) vulnerability in Adobe ColdFusion prior to 9.0.1 CHF1 allows remote malicious users to inject arbitrary web script or HTML via vectors involving a "tag script."
Adobe Coldfusion 9.0.1
Adobe Coldfusion 8.0
Adobe Coldfusion 7.0
Adobe Coldfusion 7.0.1
Adobe Coldfusion 7.0.2
Adobe Coldfusion 5.0
Adobe Coldfusion 4.5
Adobe Coldfusion
Adobe Coldfusion 8.0.1
Adobe Coldfusion 6.1
Adobe Coldfusion 6.0
Adobe Coldfusion 9.0
Adobe Coldfusion 8.1
5
CVSSv2
CVE-2011-0737
Adobe ColdFusion 9.0.1 CHF1 and previous versions allows remote malicious users to obtain sensitive information via an id=- query to a .cfm file, which reveals the installation path in an error message. NOTE: the vendor disputes the significance of this issue because the Site-wid...
Adobe Coldfusion 7.0.2
Adobe Coldfusion 8.0
Adobe Coldfusion 9.0
Adobe Coldfusion 6.0
Adobe Coldfusion 7.0
Adobe Coldfusion 5.0
Adobe Coldfusion 6.1
Adobe Coldfusion 7.0.1
Adobe Coldfusion 8.0.1
Adobe Coldfusion
Adobe Coldfusion 8.1
Adobe Coldfusion 9.0.1
Adobe Coldfusion 4.5
4.3
CVSSv2
CVE-2006-5860
Cross-site scripting (XSS) vulnerability in the administrator console for Adobe JRun 4.0, as used in ColdFusion, allows remote malicious users to inject arbitrary web script or HTML via unknown vectors.
Adobe Coldfusion 6.1
Adobe Coldfusion 7.0
Adobe Jrun 4.0
Adobe Jrun 4.0 Build 61650
7.5
CVSSv2
CVE-2005-4342
ColdFusion Sandbox on Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 does not throw an exception if the SecurityManager is disabled, which might allow remote malicious users to "bypass security controls," aka "JRun Clustered Sandbox Secu...
Macromedia Coldfusion 7.0
Macromedia Coldfusion 6.0
Macromedia Coldfusion 6.1
5
CVSSv2
CVE-2005-4343
Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 allows remote malicious users to attach arbitrary files and send mail via a crafted Subject field, which is not properly handled by the CFMAIL tag in applications that use ColdFusion, aka "CFMAIL inje...
Macromedia Coldfusion 6.1
Macromedia Coldfusion 6.0
Macromedia Coldfusion 7.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2