Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
allaire vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-1999-0924
The Syntax Checker in ColdFusion Server 4.0 allows remote malicious users to conduct a denial of service.
Allaire Coldfusion Server 4.0
7.5
CVSSv2
CVE-1999-0455
The Expression Evaluator sample application in ColdFusion allows remote malicious users to read or delete files on the server via exprcalc.cfm, which does not restrict access to the server properly.
Allaire Coldfusion Server 4.0
1 EDB exploit
5
CVSSv2
CVE-1999-0922
An example application in ColdFusion Server 4.0 allows remote malicious users to view source code via the sourcewindow.cfm file.
Allaire Coldfusion Server 4.0
7.5
CVSSv2
CVE-1999-0923
Sample runnable code snippets in ColdFusion Server 4.0 allow remote malicious users to read files, conduct a denial of service, or use the server as a proxy for other HTTP calls.
Allaire Coldfusion Server 4.0
5
CVSSv2
CVE-2000-1050
Allaire JRun 3.0 http servlet server allows remote malicious users to directly access the WEB-INF directory via a URL request that contains an extra "/" in the beginning of the request (aka the "extra leading slash").
Macromedia Jrun 3.0
1 EDB exploit
10
CVSSv2
CVE-2000-1053
Allaire JRun 2.3.3 server allows remote malicious users to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet.
Macromedia Jrun 2.3.x
1 EDB exploit
5
CVSSv2
CVE-2000-1051
Directory traversal vulnerability in Allaire JRun 2.3 server allows remote malicious users to read arbitrary files via the SSIFilter servlet.
Macromedia Jrun 2.3.x
5
CVSSv2
CVE-2000-1052
Allaire JRun 2.3 server allows remote malicious users to obtain source code for executable content by directly calling the SSIFilter servlet.
Macromedia Jrun 2.3.x
6.4
CVSSv2
CVE-2000-0539
Servlet examples in Allaire JRun 2.3.x allow remote malicious users to obtain sensitive information, e.g. listing HttpSession ID's via the SessionServlet servlet.
Macromedia Jrun 2.3
5
CVSSv2
CVE-2000-0540
JSP sample files in Allaire JRun 2.3.x allow remote malicious users to access arbitrary files (e.g. via viewsource.jsp) or obtain configuration information.
Macromedia Jrun 2.3
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-30310
CVE-2024-21683
CVE-2024-22187
chrome
deserialization
XPath injection
CVE-2024-27842
denial of service
CVE-2024-24851
google
CVE-2024-35400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »