CVE-2016-1115
11.05.2016, 01:59
Adobe ColdFusion 10 before Update 19, 11 before Update 8, and 2016 before Update 1 mishandles wildcards in name fields of X.509 certificates, which might allow man-in-the-middle attackers to spoof servers via a crafted certificate.Enginsight
| Vendor | Product | Version |
|---|---|---|
| adobe | coldfusion | 10.0 |
| adobe | coldfusion | 10.0:update1 |
| adobe | coldfusion | 10.0:update10 |
| adobe | coldfusion | 10.0:update11 |
| adobe | coldfusion | 10.0:update12 |
| adobe | coldfusion | 10.0:update13 |
| adobe | coldfusion | 10.0:update14 |
| adobe | coldfusion | 10.0:update15 |
| adobe | coldfusion | 10.0:update16 |
| adobe | coldfusion | 10.0:update17 |
| adobe | coldfusion | 10.0:update18 |
| adobe | coldfusion | 10.0:update2 |
| adobe | coldfusion | 10.0:update3 |
| adobe | coldfusion | 10.0:update4 |
| adobe | coldfusion | 10.0:update5 |
| adobe | coldfusion | 10.0:update6 |
| adobe | coldfusion | 10.0:update7 |
| adobe | coldfusion | 10.0:update8 |
| adobe | coldfusion | 10.0:update9 |
| adobe | coldfusion | 11.0 |
| adobe | coldfusion | 11.0:update1 |
| adobe | coldfusion | 11.0:update2 |
| adobe | coldfusion | 11.0:update3 |
| adobe | coldfusion | 11.0:update4 |
| adobe | coldfusion | 11.0:update5 |
| adobe | coldfusion | 11.0:update6 |
| adobe | coldfusion | 11.0:update7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References