CVE Database
/

CVE-2005-4343

Back to search

CVE-2005-4343

Published: Dec 17, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 allows remote attackers to attach arbitrary files and send mail via a crafted Subject field, which is not properly handled by the CFMAIL tag in applications that use ColdFusion, aka "CFMAIL injection Vulnerability".

VendorProductVersions

n/a

n/a

affected
n/a

References

18078
third-party-advisory
x_refsource_SECUNIA
15904
vdb-entry
x_refsource_BID
1015369
vdb-entry
x_refsource_SECTRACK
ADV-2005-2948
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now