CVE Vulnerabilities

CVE-2013-0629

Published: Jan 09, 2013 | Modified: Oct 22, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10, when a password is not configured, allows attackers to access restricted directories via unspecified vectors, as exploited in the wild in January 2013.

Affected Software

NameVendorStart VersionEnd Version
ColdfusionAdobe9.0 (including)9.0 (including)
ColdfusionAdobe9.0.1 (including)9.0.1 (including)
ColdfusionAdobe9.0.2 (including)9.0.2 (including)
ColdfusionAdobe10.0 (including)10.0 (including)

References