Required CVE Record Information
Description
PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to modify the flow of execution of ColdFusion code by using an HTTP GET request to set a ColdFusion variable.
References 1 Total
- kb.cert.org: VU#437385 third-party-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 1 Total
- kb.cert.org: VU#437385 third-party-advisoryx_transferred