5
CVSSv2

CVE-2004-0928

Published: 05/10/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Microsoft IIS Connector in JRun 4.0 and Macromedia ColdFusion MX 6.0, 6.1, and 6.1 J2EE allows remote malicious users to bypass authentication and view source files, such as .asp, .pl, and .php files, via an HTTP request that ends in ";.cfm".

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hitachi cosminexus enterprise 01 01 1

hitachi cosminexus enterprise 01 02 2

macromedia jrun 3.1

macromedia jrun 3.0

macromedia coldfusion 6.1

macromedia coldfusion 6.0

hitachi cosminexus server web 01-01 2

hitachi cosminexus server web 01-01 1

macromedia jrun 4.0