Filter

Adobe ColdFusionColdFusion 5.0 and earlier on Windows systems allows remote attackers to determine the absolute path…

First published (updated )

Allaire ForumsAllaire Forums 2.0.4 and 2.0.5 and Forums! 3.0 and 3.1 allows remote authenticated users to spoof me…

7.5
First published (updated )

Adobe ColdFusionVulnerabilities in ColdFusion 2.0 through 4.5.1 SP 2 allow remote attackers to (1) read or delete ar…

First published (updated )

Adobe ColdFusionAn example application in ColdFusion Server 4.0 allows remote attackers to view source code via the …

First published (updated )

Adobe ColdFusionThe Syntax Checker in ColdFusion Server 4.0 allows remote attackers to conduct a denial of service.

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Allaire ForumsThe GetFile.cfm file in Allaire Forums allows remote attackers to read files through a parameter to …

First published (updated )

Adobe ColdFusionColdFusion Administrator with Advanced Security enabled allows remote users to stop the ColdFusion s…

First published (updated )

Adobe ColdFusionUndocumented ColdFusion Markup Language (CFML) tags and functions in the ColdFusion Administrator al…

First published (updated )

Adobe ColdFusionSample runnable code snippets in ColdFusion Server 4.0 allow remote attackers to read files, conduct…

7.5
First published (updated )

Adobe ColdFusionWeak Encryption

2.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Allaire SpectraVulnerability in an administrative interface utility for Allaire Spectra 1.0.1 allows remote attacke…

First published (updated )

Adobe ColdFusionColdFusion Administrator for ColdFusion 4.5.1 and earlier allows remote attackers to cause a denial …

First published (updated )

Adobe ColdFusionColdFusion Server 4.5.1 allows remote attackers to cause a denial of service by making repeated requ…

First published (updated )

Allaire ClustercatsColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection, which …

2.6
First published (updated )

Allaire SpectraThe Allaire Spectra container editor preview tool does not properly enforce object security, which a…

2.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Allaire ForumsAllaire Forums 2.0.5 allows remote attackers to bypass access restrictions to secure conferences via…

First published (updated )

Adobe ColdFusionColdFusion Server 4.x allows remote attackers to determine the real pathname of the server via an HT…

First published (updated )

Allaire SpectraThe Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying …

First published (updated )

Adobe ColdFusionCold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote a…

7.5
First published (updated )

Allaire SpectraThe Allaire Spectra Configuration Wizard allows remote attackers to cause a denial of service by rep…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Allaire SpectraThe Remote Access Service invoke.cfm template in Allaire Spectra 1.0 allows users to bypass authenti…

7.5
First published (updated )

Adobe ColdFusionHTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web …

7.5
First published (updated )

Adobe ColdFusionThe Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload fil…

7.5
First published (updated )

Adobe ColdFusionThe Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete …

7.5
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203