Skip to main content

Adobe ColdFusion Multiple Vulnerabilities

Last Update Date: 10 Jul 2013 14:25 Release Date: 10 Jul 2013 3851 Views

RISK: Medium Risk

TYPE: Servers - Internet App Servers

TYPE: Internet App Servers

Multiple vulnerability have been identified in Adobe ColdFusion, which can be exploited by malicious people to cause a DoS (Denial of Service).

 

The vulnerability is caused due to an unspecified error and can be exploited to invoke public methods on ColdFusion Components (CFC) using WebSockets.


Impact

  • Denial of Service
  • Security Restriction Bypass

System / Technologies affected

  • Adobe ColdFusion 9.x
  • Adobe ColdFusion 10.x

 


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Apply the jrun-hotfix-3329722.jar patch.

Vulnerability Identifier


Source


Related Link