Количество 3
Количество 3
CVE-2025-61811
ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary code execution in the context of the current user. A high privileged attacker could leverage this vulnerability to bypass security measures and execute malicious code. Exploitation of this issue does not require user interaction and scope is changed.
GHSA-r74v-f24v-2v5w
ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary code execution in the context of the current user. A high privileged attacker could leverage this vulnerability to bypass security measures and execute malicious code. Exploitation of this issue does not require user interaction and scope is changed.
BDU:2025-15516
Уязвимость программной платформы ColdFusion, связанная с ошибками разграничения доступа, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-61811 ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary code execution in the context of the current user. A high privileged attacker could leverage this vulnerability to bypass security measures and execute malicious code. Exploitation of this issue does not require user interaction and scope is changed. | CVSS3: 9.1 | 1% Низкий | 2 месяца назад | |
GHSA-r74v-f24v-2v5w ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary code execution in the context of the current user. A high privileged attacker could leverage this vulnerability to bypass security measures and execute malicious code. Exploitation of this issue does not require user interaction and scope is changed. | CVSS3: 8.4 | 1% Низкий | 2 месяца назад | |
BDU:2025-15516 Уязвимость программной платформы ColdFusion, связанная с ошибками разграничения доступа, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.4 | 1% Низкий | 2 месяца назад |
Уязвимостей на страницу