← Back to CVE List

CVE-2014-5468

Published: 2020-02-07T17:15Z
Last Modified: 2024-11-21T02:12Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A File Inclusion vulnerability exists in Railo 4.2.1 and earlier via a specially-crafted URL request to the thumbnail.cfm to specify a malicious PNG file, which could let a remote malicious user obtain sensitive information or execute arbitrary code. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt