The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server via exprcalc.cfm, which does not restrict access to the server properly.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.securityfocus.com/bid/115 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2000-02-04T05:00:00
Updated: 2024-08-01T16:41:44.949Z
Reserved: 1999-06-07T00:00:00
Link: CVE-1999-0455
Vulnrichment
No data.
NVD
Status : Modified
Published: 1999-12-25T05:00:00.000
Modified: 2024-11-20T23:28:46.690
Link: CVE-1999-0455
Redhat
No data.