The AdminAPI of ColdFusion MX 7 allows attackers to bypass authentication by using programmatic access to the adminAPI instead of the ColdFusion Administrator.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Coldfusion | Macromedia | 7.0 (including) | 7.0 (including) |
Coldfusion | Macromedia | 7.02 (including) | 7.02 (including) |