Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:COLDFUSION:ADMIN-PROBE

Severity

Low

Recommended

No

Category

HTTP

Keywords

Coldfusion Administrator Probe

Release Date

2003/04/22

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: Coldfusion Administrator Probe


This signature detects access to the ColdFusion administrative page.

Extended Description

Due to a faulty mechanism in the password parsing implementation in authentication requests, it is possible to launch a denial of service attack against Allaire ColdFusion 4.5.1 or previous by inputting a string of over 40 000 characters to the password field in the Administrator login page. CPU utilization could reach up to 100%, bringing the program to halt. The default form for the login page would prevent such an attack. However, a malicious user could download the form locally to their hard drive, modify HTML tag fields, and be able to submit the 40 000 character string to the ColdFusion Server. Restarting the application would be required in order to regain normal functionality.

Affected Products

  • Allaire ColdFusion Server 2.0.0
  • Allaire ColdFusion Server 3.0.0
  • Allaire ColdFusion Server 3.0.1
  • Allaire ColdFusion Server 3.1.0
  • Allaire ColdFusion Server 3.1.1
  • Allaire ColdFusion Server 3.1.2
  • Allaire ColdFusion Server 4.0.0
  • Allaire ColdFusion Server 4.0.1
  • Allaire ColdFusion Server 4.5.0
  • Allaire ColdFusion Server 4.5.1

References

  • BugTraq: 1314
  • CVE: CVE-2000-0538

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out