CVE-2004-1815

3 documents3 sources
Severity
5.0MEDIUM
EPSS
8.6%
top 7.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 15
Latest updateApr 29

Description

Unknown vulnerability in ColdFusion MX 6.0 and 6.1, and JRun 4.0, when a SOAP web service expects an array of objects as an argument, allows remote attackers to cause a denial of service (memory consumption).

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

NVDmacromedia/jrun4.0, 4.0_build_61650+1
NVDmacromedia/coldfusion6.0, 6.1+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-cx7g-jvmq-9xr6: Unknown vulnerability in ColdFusion MX 62022-04-29
CVEList
CVE-2004-1815: Unknown vulnerability in ColdFusion MX 62005-05-10