5
CVSSv2

CVE-2004-2505

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Macromedia ColdFusion MX prior to 6.1 does not restrict the size of error messages, which allows remote malicious users to cause a denial of service (memory consumption and crash) by sending repeated GET or POST requests that trigger error messages that use long strings of data.

Vulnerable Product Search on Vulmon Subscribe to Product

macromedia coldfusion 5.0

macromedia coldfusion 6.0

Exploits

source: wwwsecurityfocuscom/bid/10163/info A denial of service vulnerability has been reported in Macromedia ColdFusion MX that is reported to occur when the software attempts to write oversized error messages These error messages will be logged by the server but may also be written into dynamically generated error pages It is possible ...