Количество 3
Количество 3
CVE-2025-43559
ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. A high-privileged attacker could leverage this vulnerability to bypass security mechanisms and execute code. Exploitation of this issue does not require user interaction and scope is changed.
GHSA-rcc5-3vf5-vg86
ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. A high-privileged attacker could leverage this vulnerability to bypass security mechanisms and execute code. Exploitation of this issue does not require user interaction and scope is changed.
BDU:2025-05501
Уязвимость программной платформы ColdFusion, связанная с недостаточной проверкой входных данных, позволяющая нарушителю обойти существующие ограничения безопасности и выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-43559 ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. A high-privileged attacker could leverage this vulnerability to bypass security mechanisms and execute code. Exploitation of this issue does not require user interaction and scope is changed. | CVSS3: 9.1 | 6% Низкий | 9 месяцев назад | |
GHSA-rcc5-3vf5-vg86 ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. A high-privileged attacker could leverage this vulnerability to bypass security mechanisms and execute code. Exploitation of this issue does not require user interaction and scope is changed. | CVSS3: 9.1 | 6% Низкий | 9 месяцев назад | |
BDU:2025-05501 Уязвимость программной платформы ColdFusion, связанная с недостаточной проверкой входных данных, позволяющая нарушителю обойти существующие ограничения безопасности и выполнить произвольный код | CVSS3: 9.1 | 6% Низкий | 9 месяцев назад |
Уязвимостей на страницу