AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-6482

MEDIUM · CVSS 5 EPSS 2.18%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-12-12 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.0. It may be remotely exploitable.

CVE
CVE-2006-6482
Severity
MEDIUM
CVSS
5
EPSS
2.18%

Original NVD Description

Adobe ColdFusion MX7 allows remote attackers to obtain sensitive information via a URL request (1) for a non-existent (a) JWS, (b) CFM, (c) CFML, or (d) CFC file, which displays the installation path in the resulting error message; or (2) to /CFIDE/administrator/login.cfm without a host, which can reveal the server's internal IP address in an HREF tag.