5
CVSSv2

CVE-2013-3336

Published: 09/05/2013 Updated: 07/11/2013
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Unspecified vulnerability in Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10 allows remote malicious users to read arbitrary files via unknown vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe coldfusion 9.0

adobe coldfusion 10.0

adobe coldfusion 9.0.1

adobe coldfusion 9.0.2

Exploits

#!/usr/bin/env python # -*- coding: utf-8 -*- intro=""" _ _ _______ _____ _ _ _______ Cold ,''' Fusion |_____| | |_____] \ / |______ Cold ,''' /-- Fusion | | | | \/ ______| Cold -,__,' Fusion Name : ColdSub-ZeropyFusion v2 Description : CF9-10 Remo ...

Recent Articles

Enjoy the weekend, sysadmins: Next Tues fixes 33 Microsoft bugs
The Register • John Leyden • 10 May 2013

Including IE8 remote code execution hole that pwned US nuke lab

Microsoft has promised to fix a high-profile vulnerability in Internet Explorer 8, among other holes, in this month's Patch Tuesday rollout of security updates. In all, next week's bucket of upgrades will address 33 bugs in a range of Redmond software. The flaws have been grouped into 10 sets of holes: two marked critical and eight important. The critical updates kill off vulnerabilities in Internet Explorer that allow miscreants to remotely execute malicious code on victims' machines: one will ...