Vulnerabilities > CVE-2006-3979 - Authentication Bypass vulnerability in Macromedia Coldfusion 7.0/7.02

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
macromedia

Summary

The AdminAPI of ColdFusion MX 7 allows attackers to bypass authentication by using "programmatic access" to the adminAPI instead of the ColdFusion Administrator.

Vulnerable Configurations

Part Description Count
Application
Macromedia
2