First published: Mon Mar 12 2001(Updated: )
ColdFusion Administrator with Advanced Security enabled allows remote users to stop the ColdFusion server via the Start/Stop utility.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe ColdFusion | =4.0 | |
Adobe ColdFusion | =4.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0756 is considered a high-severity vulnerability due to its potential to allow unauthorized remote users to stop the ColdFusion server.
To mitigate CVE-1999-0756, restrict access to the ColdFusion Administrator and disable the Start/Stop utility for unauthorized users.
CVE-1999-0756 affects Adobe ColdFusion Server versions 4.0 and 4.0.1.
Yes, CVE-1999-0756 can be exploited remotely if advanced security settings are not properly configured.
CVE-1999-0756 allows an attacker to disrupt service by stopping the ColdFusion server, leading to potential downtime and unauthorized access.