Unrated severityNVD Advisory· Published Dec 14, 2011· Updated Jun 16, 2026
CVE-2011-4368
CVE-2011-4368
Description
Cross-site scripting (XSS) vulnerability in Remote Development Services (RDS) in Adobe ColdFusion 8.0 through 9.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
5>=8.0, <=9.0.1+ 4 more
- (no CPE)range: >=8.0, <=9.0.1
- cpe:2.3:a:adobe:coldfusion:8.0:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:coldfusion:8.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:coldfusion:9.0:*:*:*:*:*:*:*
- cpe:2.3:a:adobe:coldfusion:9.0.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- www.adobe.com/support/security/bulletins/apsb11-29.htmlnvdPatchVendor Advisory
- www.securitytracker.com/idnvd
News mentions
0No linked articles in our index yet.