First published: Fri Dec 31 1999(Updated: )
HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe ColdFusion |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1124 is considered a moderate severity vulnerability, as it allows unauthorized access to restricted web pages.
To fix CVE-1999-1124, it's recommended to update to the latest version of Adobe ColdFusion that addresses this issue.
CVE-1999-1124 is a web application vulnerability that allows attackers to bypass access restrictions.
CVE-1999-1124 affects users of Adobe ColdFusion applications that have not implemented proper access controls.
Yes, CVE-1999-1124 can lead to unauthorized access and potential exposure of sensitive data on the server.