CVE Vulnerabilities

CVE-2005-4342

Published: Dec 19, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

ColdFusion Sandbox on Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 does not throw an exception if the SecurityManager is disabled, which might allow remote attackers to bypass security controls, aka JRun Clustered Sandbox Security Vulnerability.

Affected Software

NameVendorStart VersionEnd Version
ColdfusionMacromedia6.0 (including)6.0 (including)
ColdfusionMacromedia6.1 (including)6.1 (including)
ColdfusionMacromedia7.0 (including)7.0 (including)

References