Количество 3
Количество 3
CVE-2026-48319
ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker with high privileges could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user interaction. Scope is changed.
GHSA-m5vp-7jc3-c6vp
ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.
BDU:2026-10061
Уязвимость программной платформы ColdFusion, связанная с неверным ограничением имени пути к каталогу, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-48319 ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker with high privileges could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user interaction. Scope is changed. | CVSS3: 9.1 | 27% Средний | 16 дней назад | |
GHSA-m5vp-7jc3-c6vp ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed. | CVSS3: 9.1 | 27% Средний | 16 дней назад | |
BDU:2026-10061 Уязвимость программной платформы ColdFusion, связанная с неверным ограничением имени пути к каталогу, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.1 | 27% Средний | 17 дней назад |
Уязвимостей на страницу