Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

January 16th, 2013, 16:31 GMT · By

BLOG

Adobe Patches Four Critical Vulnerabilities in ColdFusion

SHARE:

Adjust text size:


Security holes allow gaining unauthorized server control Enlarge picture - Security holes allow gaining unauthorized server control
Adobe rolled out a security hotfix that addresses critical vulnerabilities in ColdFusion 10, 9.0.2, 9.0.1 and 9.0 for Windows, Mac and Unix.

The security holes could allow unauthorized individuals to bypass authentication mechanisms and thus gain control of the server.

The company is aware that the weak points in the web application development platform are currently being exploited in the wild against ColdFusion customers and recommends applying the latest update.

With the current hotfix, Adobe eliminates a total of four vulnerabilities that permit an unauthorized user access to restricted directories, information disclosure from a compromised server and unauthorized and gaining administrative access.

Adobe labeled this patch with priority rating 1, which carries the recommendation to be installed within 72 hours since the exploitation of the vulnerabilities has been spotted in the wild.

Complete steps for applying the patch for all affected ColdFusion versions are available on this page.

TELL US WHAT YOU THINK:

848 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Flaw in Foxit Reader Browser Plugin Allows Cybercriminals to Compromise Computers

Adobe Addresses 27 Vulnerabilities in Acrobat and Reader XI

Adobe to Release Security Updates for Reader and Acrobat on January 8, 2013

Sum-Up of Cyberattacks Aimed at Organizations – Infographic

US-CERT Warns About 2-Year-Old Vulnerability in Adobe Shockwave Player

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM