>> Adobe ColdFusion MX and JRun IIS Connector Remote Denial of Service Vulnerability
Title : Adobe ColdFusion MX and JRun IIS Connector Remote Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2007-0932 CVE ID : CVE-2007-1278
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-03-14
Technical Description
A vulnerability has been identified in Adobe ColdFusion MX and JRun, which could be exploited by attackers to cause a denial of service. This issue is due to an error in the IIS connector when handling certain requests, which could be exploited by attackers to crash an affected application by taking specific actions after requesting a file located in the web root folder.