CVE-2013-0625 Information

Description

Adobe ColdFusion 9.0 9.0.1 and 9.0.2 when a password is not configured allows remote attackers to bypass authentication and possibly execute arbitrary code via unspecified vectors as exploited in the wild in January 2013.

Reference

http://www.adobe.com/support/security/advisories/apsa13-01.html http://www.adobe.com/support/security/bulletins/apsb13-03.html http://www.securityfocus.com/bid/57164

Share on: