CVE Vulnerabilities

CVE-2005-4343

Published: Dec 19, 2005 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 allows remote attackers to attach arbitrary files and send mail via a crafted Subject field, which is not properly handled by the CFMAIL tag in applications that use ColdFusion, aka CFMAIL injection Vulnerability.

Affected Software

Name Vendor Start Version End Version
Coldfusion Macromedia 6.1 6.1
Coldfusion Macromedia 7.0 7.0
Coldfusion Macromedia 6.0 6.0
Coldfusion Macromedia 6.1 6.1
Coldfusion Macromedia 6.1 6.1

References