vendor:
ColdFusion MX
by:
Unknown
7.5
CVSS
HIGH
Privilege Escalation
CWE
Product Name: ColdFusion MX
Affected Version From: Macromedia ColdFusion MX
Affected Version To: Macromedia ColdFusion MX
Patch Exists: NO
Related CWE:
CPE: a:macromedia:coldfusion:mx
Platforms Tested: Unknown
Unknown
Privilege Escalation Vulnerability in Macromedia ColdFusion MX
Macromedia ColdFusion MX is affected by a privilege escalation vulnerability when handling templates. This vulnerability allows a user to perform actions with administrator privileges, potentially leading to unauthorized access and control of the affected system.
Mitigation:
Update to a non-vulnerable version of the software. Macromedia ColdFusion MX is no longer supported and has been replaced by Adobe ColdFusion.