Unrated severityNVD Advisory· Published Mar 12, 2008· Updated Jun 16, 2026
CVE-2008-1203
CVE-2008-1203
Description
The administrator interface for Adobe ColdFusion 8 and ColdFusion MX7 does not log failed authentication attempts, which makes it easier for remote attackers to conduct brute force attacks without detection.
Affected products
5cpe:2.3:a:adobe:coldfusion:7.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:adobe:coldfusion:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:coldfusion:8.0:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
6News mentions
0No linked articles in our index yet.