Vulnerability Description
Sample runnable code snippets in ColdFusion Server 4.0 allow remote attackers to read files, conduct a denial of service, or use the server as a proxy for other HTTP calls.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Allaire | Coldfusion Server | 4.0 |
References
- http://www.allaire.com/handlers/index.cfm?ID=8739&Method=FullPatchVendor Advisory
- http://www.allaire.com/handlers/index.cfm?ID=8739&Method=FullPatchVendor Advisory
FAQ
What is CVE-1999-0923?
CVE-1999-0923 is a vulnerability with a CVSS score of 7.5 (HIGH). Sample runnable code snippets in ColdFusion Server 4.0 allow remote attackers to read files, conduct a denial of service, or use the server as a proxy for other HTTP calls.
How severe is CVE-1999-0923?
CVE-1999-0923 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-0923?
Check the references section above for vendor advisories and patch information. Affected products include: Allaire Coldfusion Server.