积极预防 及时发现
快速响应 力保恢复
ColdFusion Server 4.0中的可执行的代码模板样本允许远程攻击者阅读文件、制造拒绝服...
发布时间:2001-03-12 信息来源:管理员

CNCVE编号:CNCVE-19990923 CVE编号:CAN-1999-0923 安全级别:高 漏洞中文描述: ColdFusion Server 4.0中的可执行的代码模板样本允许远程攻击者阅读文件、制造拒绝服务或者使用服务器作为其他HTTP调用的代理。 漏洞英文描述: Sample runnable code snippets in ColdFusion Server 4.0 allow remote attackers to read files, conduct a denial of service, or use the server as a proxy for other HTTP calls. 漏洞参考: ALLAIRE:ASB99-02 系统类型:其他 漏洞类型:配置错误