CVE-1999-0477

ColdFusion Server - Unauthenticated Arbitrary File Upload via openfile.cfm

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-0477. PoCs published by rain.forest.puppy.

AI-analyzed exploit summary This exploit describes a directory traversal and arbitrary file deletion vulnerability in ColdFusion. It allows an attacker to read, delete, or upload files on the server by manipulating the OpenFilePath parameter.

Description

The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via openfile.cfm, which does not restrict access to the server properly.

Exploits (1)

exploitdb WRITEUP VERIFIED
by rain.forest.puppy · textremotemultiple
https://www.exploit-db.com/exploits/19093

This exploit describes a directory traversal and arbitrary file deletion vulnerability in ColdFusion. It allows an attacker to read, delete, or upload files on the server by manipulating the OpenFilePath parameter.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: ColdFusion (version not specified)
No auth needed
Prerequisites: Access to the vulnerable ColdFusion server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/115

Scores

EPSS 0.0533
EPSS Percentile 91.8%

Details

Status published
Products (6)
allaire/coldfusion_server 2.0
allaire/coldfusion_server 3.0
allaire/coldfusion_server 3.01
allaire/coldfusion_server 3.11
allaire/coldfusion_server 3.12
allaire/coldfusion_server 4.0
Published Dec 25, 1999
Tracked Since Feb 18, 2026