Coldfusion professional
This hub aggregates every CVE we track for Coldfusion professional, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
2
CVEs tracked
0
Critical
0
High
0
In CISA KEV
Severity distribution
MEDIUM2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 2 most recently published vulnerabilities affecting Coldfusion professional.
- CVE-2003-1469The default configuration of ColdFusion MX has the "Enable Robust Exception Information" option selected, which allows remote attackers to obtain the full path of the web server via a direct reques...5.0
- CVE-2002-1992Buffer overflow in jrun.dll in ColdFusion MX, when used with IIS 4 or 5, allows remote attackers to cause a denial of service in IIS via (1) a long template file name or (2) a long HTTP header.5.0
Product normalization is registry-driven with AI assist and human review. How it works