ColdFusion Sandbox on Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 does not throw an exception if the SecurityManager is disabled, which might allow remote attackers to "bypass security controls," aka "JRun Clustered Sandbox Security Vulnerability."
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:04
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/18078 - Patch, Vendor Advisory | |
References | () http://securitytracker.com/id?1015369 - Patch, Vendor Advisory | |
References | () http://www.macromedia.com/devnet/security/security_zone/mpsb05-12.html - Patch | |
References | () http://www.macromedia.com/devnet/security/security_zone/mpsb05-14.html - Patch | |
References | () http://www.securityfocus.com/bid/15904 - Patch | |
References | () http://www.vupen.com/english/advisories/2005/2948 - |
Information
Published : 2005-12-19 03:47
Updated : 2024-11-21 00:04
NVD link : CVE-2005-4342
Mitre link : CVE-2005-4342
CVE.ORG link : CVE-2005-4342
JSON object : View
Products Affected
macromedia
- coldfusion
CWE