Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Sean Waddell

Researcher fromESP Group
#49290of 53,633
5Total CVSS
Vulnerabilities · 1
PT-2005-2045
5.0
2005-04-09
Adobe · Coldfusion · CVE-2005-1022
**Name of the Vulnerable Software and Affected Versions** ColdFusion version 6.1 **Description** The issue allows remote attackers to obtain sensitive information because Java .class files are placed under the web root in the /WEB-INF/cfclasses directory. **Recommendations** For ColdFusion version 6.1, consider restricting access to the /WEB-INF/cfclasses directory to minimize the risk of exploitation.