CVE-2014-0571
15.10.2014, 10:55
Cross-site scripting (XSS) vulnerability in Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Vendor | Product | Version |
---|---|---|
adobe | coldfusion | 9.0 |
adobe | coldfusion | 9.0:update_10 |
adobe | coldfusion | 9.0:update_12 |
adobe | coldfusion | 9.0.1 |
adobe | coldfusion | 9.0.1:update_11 |
adobe | coldfusion | 9.0.1:update_9 |
adobe | coldfusion | 9.0.2 |
adobe | coldfusion | 9.0.2:update_4 |
adobe | coldfusion | 9.0.2:update_6 |
adobe | coldfusion | 10.0 |
adobe | coldfusion | 10.0:update1 |
adobe | coldfusion | 10.0:update11 |
adobe | coldfusion | 10.0:update12 |
adobe | coldfusion | 10.0:update2 |
adobe | coldfusion | 10.0:update3 |
adobe | coldfusion | 10.0:update4 |
adobe | coldfusion | 10.0:update8 |
adobe | coldfusion | 11.0 |
𝑥
= Vulnerable software versions