Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f5jx-v2mg-438v

Опубликовано: 13 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

ColdFusion versions 2023.6, 2021.12 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain unauthorized access and affect the integrity of the application. Exploitation of this issue does not require user interaction.

ColdFusion versions 2023.6, 2021.12 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain unauthorized access and affect the integrity of the application. Exploitation of this issue does not require user interaction.

EPSS

Процентиль: 69%
0.00594
Низкий

7.5 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

ColdFusion versions 2023.6, 2021.12 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain unauthorized access and affect the integrity of the application. Exploitation of this issue does not require user interaction.

CVSS3: 7.5
fstec
почти 2 года назад

Уязвимость программной платформы ColdFusion, связанная с недостатками процедуры аутентификации, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 69%
0.00594
Низкий

7.5 High

CVSS3

Дефекты

CWE-287