Vulnerabilities > CVE-2002-0576 - Unspecified vulnerability in Allaire Coldfusion Server 4.0/4.5/5.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN allaire
nessus
Summary
ColdFusion 5.0 and earlier on Windows systems allows remote attackers to determine the absolute pathname of .cfm or .dbm files via an HTTP request that contains an MS-DOS device name such as NUL, which leaks the pathname in an error message.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Nessus
NASL family | CGI abuses |
NASL id | COLDFUSION_PATH_DISCLOSURE.NASL |
description | It was possible to make the remote web server disclose the physical path to its web root by requesting a MS-DOS device ending in .dbm (as in nul.dbm). |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11393 |
published | 2003-03-15 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11393 |
title | ColdFusion on IIS cfm/dbm Diagnostic Error Path Disclosure |
code |
|
References
- http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0028.html
- http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0028.html
- http://online.securityfocus.com/archive/1/268263
- http://online.securityfocus.com/archive/1/268263
- http://www.iss.net/security_center/static/8866.php
- http://www.iss.net/security_center/static/8866.php
- http://www.macromedia.com/v1/handlers/index.cfm?ID=22906
- http://www.macromedia.com/v1/handlers/index.cfm?ID=22906
- http://www.osvdb.org/3337
- http://www.osvdb.org/3337
- http://www.securityfocus.com/bid/4542
- http://www.securityfocus.com/bid/4542