CVE-2014-0572
Severity CVSS v4.0:
Pending analysis
Type:
CWE-264
Permissions, Privileges, and Access Control
Publication date:
15/10/2014
Last modified:
12/04/2025
Description
Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows local users to bypass intended IP-based access restrictions via unspecified vectors.
Impact
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:adobe:coldfusion:9.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:9.0:update_10:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:9.0:update_12:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:9.0.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:9.0.1:update_11:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:9.0.1:update_9:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:9.0.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:9.0.2:update_4:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:9.0.2:update_6:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:10.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:10.0:update1:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:10.0:update11:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:10.0:update12:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:10.0:update2:*:*:*:*:*:* | ||
cpe:2.3:a:adobe:coldfusion:10.0:update3:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page