CVE Vulnerabilities

CVE-2008-0644

Published: Mar 12, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Adobe ColdFusion MX 7 and ColdFusion 8 allows remote attackers to bypass the cross-site scripting (XSS) protection mechanism for applications via unspecified vectors related to the setEncoding function.

Affected Software

NameVendorStart VersionEnd Version
ColdfusionAdobe7.0 (including)7.0 (including)
ColdfusionAdobe7.0.1 (including)7.0.1 (including)
ColdfusionAdobe7.0.2 (including)7.0.2 (including)
ColdfusionAdobe8.0 (including)8.0 (including)

References