CVE Vulnerabilities

CVE-2005-2306

Published: Jul 19, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.7 LOW
AV:L/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Race condition in Macromedia JRun 4.0, ColdFusion MX 6.1 and 7.0, when under heavy load, causes JRun to assign a duplicate authentication token to multiple sessions, which could allow authenticated users to gain privileges as other users.

Affected Software

NameVendorStart VersionEnd Version
ColdfusionMacromedia6.1 (including)6.1 (including)
ColdfusionMacromedia7.0 (including)7.0 (including)
JrunMacromedia4.0 (including)4.0 (including)

References