ColdFusion DOS Device File Request...

- AV AC AU C I A
发布: 2002-04-18
修订: 2025-04-13

Allaire Macromedia ColdFusion is a web application server. This issue impacts versions of ColdFusion for the Microsoft Windows family of operating systems. An issue has been discovered in ColdFusion Server, which could enable a remote user to reveal sensitive system information. Submitting a web request for DOS-device with a non-existant .cfm or .dbm file extension, will cause the ColdFusion host to return an error message containing the path to the web root.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息