CVE-2005-2306: Race Condition
Race condition in Macromedia JRun 4.0, ColdFusion MX 6.1 and 7.0, when under heavy load, causes JRun to assign a duplicate authentication token to multiple sessions, which could allow authenticated users to gain privileges as other users.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2306?
CVE-2005-2306 is considered to be a high severity vulnerability due to its potential to allow unauthorized access to user sessions.
How do I fix CVE-2005-2306?
To fix CVE-2005-2306, users should apply the latest patches provided by Adobe for ColdFusion 6.1, 7.0, and JRun 4.0.
What software is affected by CVE-2005-2306?
CVE-2005-2306 affects Macromedia ColdFusion 6.1, ColdFusion 7.0, and JRun 4.0.
What type of vulnerability is CVE-2005-2306?
CVE-2005-2306 is a race condition vulnerability that can lead to improper session management.
Who is impacted by CVE-2005-2306?
Authenticated users are impacted by CVE-2005-2306 as it allows them to gain unauthorized privileges in other user sessions.