CVE-2013-3350 Information
Feb 14, 2021
cve
Description
Adobe ColdFusion 10 before Update 11 allows remote attackers to call ColdFusion Components (CFC) public methods via WebSockets.
Reference
http://stackoverflow.com/questions/17351214/cf10-websocket-p2p-can-invoke-any-public-functions-in-any-cfc-from-javascript-h http://www.adobe.com/support/security/bulletins/apsb13-19.html http://www.securitytracker.com/id/1028757
Share on: