Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-6482

Опубликовано: 12 дек. 2006
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

Adobe ColdFusion MX7 allows remote attackers to obtain sensitive information via a URL request (1) for a non-existent (a) JWS, (b) CFM, (c) CFML, or (d) CFC file, which displays the installation path in the resulting error message; or (2) to /CFIDE/administrator/login.cfm without a host, which can reveal the server's internal IP address in an HREF tag.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:adobe:coldfusion:7.0:*:*:*:*:*:*:*

EPSS

Процентиль: 80%
0.0139
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Adobe ColdFusion MX7 allows remote attackers to obtain sensitive information via a URL request (1) for a non-existent (a) JWS, (b) CFM, (c) CFML, or (d) CFC file, which displays the installation path in the resulting error message; or (2) to /CFIDE/administrator/login.cfm without a host, which can reveal the server's internal IP address in an HREF tag.

EPSS

Процентиль: 80%
0.0139
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other