Логотип exploitDog
bind:CVE-2023-38205
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-38205

Количество 3

Количество 3

nvd логотип

CVE-2023-38205

больше 2 лет назад

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction.

CVSS3: 7.5
EPSS: Критический
github логотип

GHSA-76wh-rggp-rxxq

больше 2 лет назад

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction.

CVSS3: 7.5
EPSS: Критический
fstec логотип

BDU:2023-04256

больше 2 лет назад

Уязвимость программной платформы ColdFusion, связанная с неправильным контролем доступа, позволяющая нарушителю обойти существующие ограничения безопасности

CVSS3: 7.5
EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-38205

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction.

CVSS3: 7.5
94%
Критический
больше 2 лет назад
github логотип
GHSA-76wh-rggp-rxxq

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction.

CVSS3: 7.5
94%
Критический
больше 2 лет назад
fstec логотип
BDU:2023-04256

Уязвимость программной платформы ColdFusion, связанная с неправильным контролем доступа, позволяющая нарушителю обойти существующие ограничения безопасности

CVSS3: 7.5
94%
Критический
больше 2 лет назад

Уязвимостей на страницу