*Describe£º*ColdFusion probe.cfm page local parameter can xss *CVE£º*Unknow *PoC£º* http://127.0.0.1/CFIDE/probe.cfm?name= URL.Name parameter can xss only local. Or visit: http://www.focusecurity.org/2011/08/ColdFusion-Local-Parameter-Xss-Exploit.html