The default configuration of Adobe ColdFusion 9.0 does not restrict access to collections that have been created by the Solr Service, which allows remote attackers to obtain collection metadata, search information, and index data via a request to an unspecified URL.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2024-08-07T00:37:54.126Z
Reserved: 2010-01-06T00:00:00
Link: CVE-2010-0185

No data.

Status : Deferred
Published: 2010-02-03T18:30:00.610
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-0185

No data.