Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fpxx-jv2f-8cf9

Опубликовано: 07 сент. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

ColdFusion version 2021 update 1 (and earlier) and versions 2018.10 (and earlier) are impacted by an Use of Inherently Dangerous Function vulnerability that can lead to a security feature bypass??. An authenticated attacker could leverage this vulnerability to access and manipulate arbitrary data on the environment.

ColdFusion version 2021 update 1 (and earlier) and versions 2018.10 (and earlier) are impacted by an Use of Inherently Dangerous Function vulnerability that can lead to a security feature bypass??. An authenticated attacker could leverage this vulnerability to access and manipulate arbitrary data on the environment.

EPSS

Процентиль: 32%
0.00122
Низкий

7.4 High

CVSS3

Дефекты

CWE-242

Связанные уязвимости

CVSS3: 7.4
nvd
больше 2 лет назад

ColdFusion version 2021 update 1 (and earlier) and versions 2018.10 (and earlier) are impacted by an Use of Inherently Dangerous Function vulnerability that can lead to a security feature bypass  . An authenticated attacker could leverage this vulnerability to access and manipulate arbitrary data on the environment.

CVSS3: 9.8
fstec
больше 4 лет назад

Уязвимость программной платформы ColdFusion, связанная с использованием изначально опасных функций , позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 32%
0.00122
Низкий

7.4 High

CVSS3

Дефекты

CWE-242