Vulnerabilities > Macromedia > Coldfusion > Low

DATE CVE VULNERABILITY TITLE RISK
2005-12-19 CVE-2005-4344 Multiple vulnerability in Macromedia Coldfusion 7.0
Adobe (formerly Macromedia) ColdFusion MX 7.0 does not honor when the CFOBJECT /CreateObject(Java) setting is disabled, which allows local users to create an object despite the specified configuration.
local
low complexity
macromedia
2.1
2005-07-19 CVE-2005-2306 Local Security vulnerability in Macromedia Coldfusion and Jrun
Race condition in Macromedia JRun 4.0, ColdFusion MX 6.1 and 7.0, when under heavy load, causes JRun to assign a duplicate authentication token to multiple sessions, which could allow authenticated users to gain privileges as other users.
local
high complexity
macromedia
3.7
2004-06-01 CVE-2004-0407 Denial Of Service vulnerability in Macromedia Coldfusion 6.1
The HTML form upload capability in ColdFusion MX 6.1 does not reclaim disk space if an upload is interrupted, which allows remote attackers to cause a denial of service (disk consumption) by repeatedly uploading files and interrupting the uploads before they finish.
network
high complexity
macromedia
2.6