The Microsoft IIS Connector in JRun 4.0 and Macromedia ColdFusion MX 6.0, 6.1, and 6.1 J2EE allows remote attackers to bypass authentication and view source files, such as .asp, .pl, and .php files, via an HTTP request that ends in ";.cfm".
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-04-21T04:00:00

Updated: 2024-08-08T00:31:48.097Z

Reserved: 2004-10-04T00:00:00

Link: CVE-2004-0928

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2004-10-05T04:00:00.000

Modified: 2017-07-11T01:30:35.137

Link: CVE-2004-0928

cve-icon Redhat

No data.