Macromedia ColdFusion MX IIS ISAPI...

- AV AC AU C I A
发布: 2002-06-28
修订: 2025-04-13

The Macromedia ColdFusion MX IIS ISAPI handler is prone to a remotely exploitable buffer overrun condition. The issue is due to a lack of bounds checking on requested filenames. It is possible to trigger the overrun by requesting a filename (with extension ".cfm") of length 4096 characters or greater. According to Macromedia, an overflow also occurs if the "template filename" is greater than 8092 bytes in length.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息