Macromedia ColdFusion HTTP Client Sample Application Proxy Access Vulnerability

ColdFusion includes a sample HTTP client application (cfdocs/examples/httpclient/mainframeset.cfm) which may allow a remote attacker to proxy a malicious connection to the host running the software, where otherwise the connection may be refused because it does not originate from the local host.


 

Privacy Statement
Copyright 2010, SecurityFocus