|
Macromedia ColdFusion MX Remote File Content Disclosure Vulnerability
Macromedia ColdFusion MX is affected by a remote file content disclosure vulnerability. This vulnerability is caused by access validation issue that allows an attacker to bypass protections to reveal the contents of files. It should be noted that this issue does not reveal directory contents, therefore attackers must have prior knowledge of target files. An attacker may leverage this issue to read the contents of files contained under the webroot directory that are readable by the ColdFusion process on the affected computer; affectively bypassing access restrictions set in the IIS management system. |
|
|
Privacy Statement |