Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2000-0538

EPSS 9.01% · P93
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2000-0538

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
ColdFusion Administrator for ColdFusion 4.5.1 and earlier allows remote attackers to cause a denial of service via a long login password.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Allaire ColdFusion index.cfm远程拒绝服务攻击漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Allaire ColdFusion是一种流行的Web功能扩展软件包,可以运行在Windows、HP-UX、Linux等多种平台上。 Allaire ColdFusion v4.5.1及其以前版本在处理口令验证请求过程中存在一个安全漏洞,如果在管理员登录页面的口令域里输入超过40000个字符,CPU占用率将达到100%,进程挂起,造成拒绝服务攻击。 登录页面表单默认会阻止你输入超过40000个字符,然而恶意用户可以下载页面到本地,修改后向ColdFusion服务器提交超过40000个字符。为了恢复正常功能
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2000-0538

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2000-0538

登录查看更多情报信息。

Same Patch Batch · n/a · 2000-10-13 · 261 CVEs total

CVE-2000-0616HP TurboIMAGE DBUTIL特权提升漏洞
CVE-2000-0587glftpd privpath指令漏洞
CVE-2000-0588Flowerfire Sawmill文件访问漏洞
CVE-2000-0591Novell BorderManager URL规则限制绕过漏洞
CVE-2000-0594BitchX IRC客户端"/INVITE"格式字符串漏洞
CVE-2000-0595libedit任意命令执行漏洞
CVE-2000-0596Microsoft Internet Explorer 安全漏洞
CVE-2000-0597Microsoft Internet Explorer 5.01 和Excel/Powerpoint 2000 ActiveX 对象执行漏洞
CVE-2000-0598Fortech Proxy+远程登录网关漏洞
CVE-2000-0599iMesh.Com iMesh 1.02缓冲区溢出漏洞
CVE-2000-0601LeafDigital LeafChat 1.7 DoS漏洞
CVE-2000-0602Secure Locate LOCATE_PATH认证漏洞
CVE-2000-0603Microsoft SQL Server 许可绕过漏洞
CVE-2000-0604Red Hat Linux gkermit文件修改漏洞
CVE-2000-0610NetWin dMailWeb and cwMail认证漏洞
CVE-2000-0611NetWin dMailWeb和 cwMai拒绝服务漏洞
CVE-2000-0613Cisco Secure PIX防火墙伪造TCP RST漏洞
CVE-2000-0635MiniVend shopping cart任意命令执行漏洞
CVE-2000-0636HP JetDirect打印机服务拒绝漏洞
CVE-2000-0637Microsoft Excel 97 / 2000 Register.ID漏洞

Showing top 20 of 261 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2000-0538

No comments yet


Leave a comment