Security Advisory

CVE-1999-0477

7.5

Vulnerability Description

The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via openfile.cfm, which does not restrict access to the server properly.
Published Date December 25, 1999
Official Source NIST NVD Advisory