CVE-2002-1309

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/11/2002
Last modified:
03/04/2025

Description

Heap-based buffer overflow in the error-handling mechanism for the IIS ISAPI handler in Macromedia ColdFusion 6.0 allows remote attackers to execute arbitrary via an HTTP GET request with a long .cfm file name.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:macromedia:coldfusion:6.0:*:*:*:*:*:*:*