Логотип exploitDog
bind:CVE-2025-30285
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-30285

Количество 3

Количество 3

nvd логотип

CVE-2025-30285

10 месяцев назад

ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. A high-privileged attacker could leverage this vulnerability to bypass security protections and execute code. Exploitation of this issue requires user interaction and scope is changed.

CVSS3: 8.4
EPSS: Средний
github логотип

GHSA-86h2-47xr-3w77

10 месяцев назад

ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 8
EPSS: Средний
fstec логотип

BDU:2025-04065

10 месяцев назад

Уязвимость программной платформы ColdFusion, связанная с недостатками механизма десериализации, позволяющая нарушителю выполнить произвольный код

CVSS3: 8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-30285

ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. A high-privileged attacker could leverage this vulnerability to bypass security protections and execute code. Exploitation of this issue requires user interaction and scope is changed.

CVSS3: 8.4
28%
Средний
10 месяцев назад
github логотип
GHSA-86h2-47xr-3w77

ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 8
28%
Средний
10 месяцев назад
fstec логотип
BDU:2025-04065

Уязвимость программной платформы ColdFusion, связанная с недостатками механизма десериализации, позволяющая нарушителю выполнить произвольный код

CVSS3: 8
28%
Средний
10 месяцев назад

Уязвимостей на страницу