CVE-2002-1309

Heap-based buffer overflow in the error-handling mechanism for the IIS ISAPI handler in Macromedia ColdFusion 6.0 allows remote attackers to execute arbitrary via an HTTP GET request with a long .cfm file name.

Scoring

CVSS base score
0.07
EPSS probability
1.69%
Published
2002-11-21
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs