7.5
CVE-2005-4342
- EPSS 0.99%
- Published 19.12.2005 03:47:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
ColdFusion Sandbox on Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 does not throw an exception if the SecurityManager is disabled, which might allow remote attackers to "bypass security controls," aka "JRun Clustered Sandbox Security Vulnerability."
Data is provided by the National Vulnerability Database (NVD)
Macromedia ≫ Coldfusion Version6.0
Macromedia ≫ Coldfusion Version6.1
Macromedia ≫ Coldfusion Version6.1 Editionenterprise_with_jrun
Macromedia ≫ Coldfusion Version6.1 Editionj2ee_application_server
Macromedia ≫ Coldfusion Version7.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.99% | 0.748 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|