Vulnerabilities (CVE)

Filtered by vendor Allaire Subscribe
Total 24 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0297 1 Allaire 1 Forums 2023-12-10 6.4 MEDIUM N/A
Allaire Forums 2.0.5 allows remote attackers to bypass access restrictions to secure conferences via the rightAccessAllForums or rightModerateAllForums variables.
CVE-1999-0757 1 Allaire 1 Coldfusion Server 2023-12-10 2.1 LOW N/A
The ColdFusion CFCRYPT program for encrypting CFML templates has weak encryption, allowing attackers to decrypt the templates.
CVE-2000-0050 1 Allaire 1 Spectra 2023-12-10 4.6 MEDIUM N/A
The Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying explicit URLs.
CVE-1999-0923 1 Allaire 1 Coldfusion Server 2023-12-10 7.5 HIGH N/A
Sample runnable code snippets in ColdFusion Server 4.0 allow remote attackers to read files, conduct a denial of service, or use the server as a proxy for other HTTP calls.