CVE-1999-0455

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/12/1999
Last modified:
03/04/2025

Description

The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server via exprcalc.cfm, which does not restrict access to the server properly.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:allaire:coldfusion_server:4.0:*:*:*:*:*:*:*