The Microsoft IIS Connector in JRun 4.0 and Macromedia ColdFusion MX 6.0, 6.1, and 6.1 J2EE allows remote attackers to bypass authentication and view source files, such as .asp, .pl, and .php files, via an HTTP request that ends in ";.cfm".
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2005-04-21T04:00:00

Updated: 2017-07-10T14:57:01

Reserved: 2004-10-04T00:00:00


Link: CVE-2004-0928

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2004-10-05T04:00:00.000

Modified: 2017-07-11T01:30:35.137


Link: CVE-2004-0928

JSON object: View

cve-icon Redhat Information

No data.