CVE-2005-4342: High severity Macromedia ColdFusion vulnerability
ColdFusion Sandbox on Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 does not throw an exception if the SecurityManager is disabled, which might allow remote attackers to "bypass security controls," aka "JRun Clustered Sandbox Security Vulnerability."
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-4342?
CVE-2005-4342 is considered a high severity vulnerability due to its potential to allow remote attackers to bypass security controls.
How do I fix CVE-2005-4342?
To fix CVE-2005-4342, ensure that the SecurityManager in ColdFusion is enabled and apply any available patches from Adobe.
What versions of ColdFusion are affected by CVE-2005-4342?
CVE-2005-4342 affects ColdFusion MX 6.0, 6.1, and 7.0.
Can I exploit CVE-2005-4342 remotely?
Yes, CVE-2005-4342 allows remote attackers to exploit the vulnerability if the SecurityManager is disabled.
What are the potential impacts of CVE-2005-4342?
The potential impacts of CVE-2005-4342 include unauthorized access and the ability to execute arbitrary code on the affected ColdFusion servers.