HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-1999-1105 | HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports by providing the target page to the mainframeset.cfm application, which requests the page from the server, making it look like the request is coming from the local host. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| http://packetstorm.securify.com/mag/phrack/phrack54/P54-08 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-01T17:02:53.702Z
Reserved: 2001-08-31T00:00:00
Link: CVE-1999-1124
No data.
Status : Deferred
Published: 1999-12-31T05:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-1999-1124
No data.
OpenCVE Enrichment
No data.
EUVD