The default configuration of Adobe ColdFusion 9.0 does not restrict access to collections that have been created by the Solr Service, which allows remote attackers to obtain collection metadata, search information, and index data via a request to an unspecified URL.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2010-02-03T18:00:00
Updated: 2024-08-07T00:37:54.126Z
Reserved: 2010-01-06T00:00:00
Link: CVE-2010-0185
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-02-03T18:30:00.610
Modified: 2024-11-21T01:11:43.410
Link: CVE-2010-0185
Redhat
No data.