Vulnerabilities (CVE)

Filtered by vendor Allaire Subscribe
Total 24 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0382 1 Allaire 1 Clustercats 2025-04-03 2.6 LOW N/A
ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection, which may provide sensitive information to the redirected site.
CVE-1999-0756 1 Allaire 1 Coldfusion Server 2025-04-03 5.0 MEDIUM N/A
ColdFusion Administrator with Advanced Security enabled allows remote users to stop the ColdFusion server via the Start/Stop utility.
CVE-1999-0800 1 Allaire 1 Forums 2025-04-03 5.0 MEDIUM N/A
The GetFile.cfm file in Allaire Forums allows remote attackers to read files through a parameter to GetFile.cfm.
CVE-1999-0923 1 Allaire 1 Coldfusion Server 2025-04-03 7.5 HIGH N/A
Sample runnable code snippets in ColdFusion Server 4.0 allow remote attackers to read files, conduct a denial of service, or use the server as a proxy for other HTTP calls.