Description
ColdFusion Flash Remoting is vulnerable to deserialization attacks. An attacker could exploit this vulnerability using specially-crafted serialized data to execute arbitrary code on the system or to perform denial of service attack.
Remediation
Upgrade to the latest version of ColdFusion
References
Related Vulnerabilities
WordPress Plugin Gantry 4 Framework Remote Command Execution (4.1.3)
WordPress Plugin File Gallery Remote Code Execution (1.7.9)
WordPress Plugin WordPress Mega Menu-QuadMenu Remote Code Execution (2.0.6)
WordPress Plugin wSecure Lite Remote Code Execution (2.3)
WordPress Plugin PHP Speedy 'admin_container.php' Remote PHP Code Execution (0.5.2)