CVE-2013-3349: Medium severity Adobe ColdFusion vulnerability
Published Jul 10, 2013
·Updated
Unspecified vulnerability in Adobe ColdFusion 9.0 through 9.0.2, when the JRun application server is used, allows remote attackers to cause a denial of service via unknown vectors.
Affected Software
3 affected components
Adobe ColdFusion=9.0
Adobe ColdFusion=9.0.1
Adobe ColdFusion=9.0.2
Event History
Jul 10, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-3349?
CVE-2013-3349 is classified as a denial of service vulnerability in Adobe ColdFusion versions 9.0 through 9.0.2.
2
How do I fix CVE-2013-3349?
To fix CVE-2013-3349, upgrade Adobe ColdFusion to version 9.0.3 or later.
3
What is the affected software for CVE-2013-3349?
CVE-2013-3349 affects Adobe ColdFusion versions 9.0, 9.0.1, and 9.0.2.
4
Can CVE-2013-3349 be exploited remotely?
Yes, CVE-2013-3349 allows remote attackers to exploit the vulnerability to cause a denial of service.
5
What attack vectors are associated with CVE-2013-3349?
CVE-2013-3349 does not specify the exact attack vectors that can be used for exploitation.