CVE Vulnerabilities

CVE-2014-0572

Published: Oct 15, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows local users to bypass intended IP-based access restrictions via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
ColdfusionAdobe9.0 (including)9.0 (including)
ColdfusionAdobe9.0-update_10 (including)9.0-update_10 (including)
ColdfusionAdobe9.0-update_12 (including)9.0-update_12 (including)
ColdfusionAdobe9.0.1 (including)9.0.1 (including)
ColdfusionAdobe9.0.1-update_11 (including)9.0.1-update_11 (including)
ColdfusionAdobe9.0.1-update_9 (including)9.0.1-update_9 (including)
ColdfusionAdobe9.0.2 (including)9.0.2 (including)
ColdfusionAdobe9.0.2-update_4 (including)9.0.2-update_4 (including)
ColdfusionAdobe9.0.2-update_6 (including)9.0.2-update_6 (including)
ColdfusionAdobe10.0 (including)10.0 (including)
ColdfusionAdobe10.0-update1 (including)10.0-update1 (including)
ColdfusionAdobe10.0-update11 (including)10.0-update11 (including)
ColdfusionAdobe10.0-update12 (including)10.0-update12 (including)
ColdfusionAdobe10.0-update2 (including)10.0-update2 (including)
ColdfusionAdobe10.0-update3 (including)10.0-update3 (including)
ColdfusionAdobe10.0-update4 (including)10.0-update4 (including)
ColdfusionAdobe10.0-update8 (including)10.0-update8 (including)
ColdfusionAdobe11.0 (including)11.0 (including)

References