CVE Vulnerabilities

CVE-2013-0629

Published: Jan 09, 2013 | Modified: Jul 16, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10, when a password is not configured, allows attackers to access restricted directories via unspecified vectors, as exploited in the wild in January 2013.

Affected Software

Name Vendor Start Version End Version
Coldfusion Adobe 9.0 (including) 9.0 (including)
Coldfusion Adobe 9.0.1 (including) 9.0.1 (including)
Coldfusion Adobe 9.0.2 (including) 9.0.2 (including)
Coldfusion Adobe 10.0 (including) 10.0 (including)

References