PT-2004-1549 · Adobe · Coldfusion Mx
Publicado
2004-04-17
·
Atualizado
2017-07-11
·
CVE-2004-0407
CVSS v2.0
2.6
Baixa
| Vetor | AV:N/AC:H/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
ColdFusion MX version 6.1
Description
The issue concerns the HTML form upload capability, which does not properly reclaim disk space when an upload is interrupted. This allows remote attackers to cause a denial of service by consuming disk space through repeated uploads that are interrupted before completion.
Recommendations
For ColdFusion MX version 6.1, consider implementing measures to monitor and limit disk space usage, and ensure proper cleanup of interrupted uploads to prevent denial of service attacks.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Coldfusion Mx