Логотип exploitDog
bind:CVE-2025-61822
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-61822

Количество 3

Количество 3

nvd логотип

CVE-2025-61822

2 месяца назад

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Input Validation vulnerability that could lead to arbitrary file system write. An attacker could exploit this vulnerability to write malicious files to arbitrary locations on the file system. Exploitation of this issue does not require user interaction and scope is changed.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-8r3x-4gr3-hxhv

2 месяца назад

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Input Validation vulnerability that could lead to arbitrary file system write. An attacker could exploit this vulnerability to write malicious files to arbitrary locations on the file system. Exploitation of this issue does not require user interaction and scope is changed.

CVSS3: 6.2
EPSS: Низкий
fstec логотип

BDU:2025-15476

2 месяца назад

Уязвимость программной платформы ColdFusion, связанная с недостаточной проверкой входных данных, позволяющая нарушителю записать произвольные файлы в системе

CVSS3: 6.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-61822

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Input Validation vulnerability that could lead to arbitrary file system write. An attacker could exploit this vulnerability to write malicious files to arbitrary locations on the file system. Exploitation of this issue does not require user interaction and scope is changed.

CVSS3: 6.2
0%
Низкий
2 месяца назад
github логотип
GHSA-8r3x-4gr3-hxhv

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Input Validation vulnerability that could lead to arbitrary file system write. An attacker could exploit this vulnerability to write malicious files to arbitrary locations on the file system. Exploitation of this issue does not require user interaction and scope is changed.

CVSS3: 6.2
0%
Низкий
2 месяца назад
fstec логотип
BDU:2025-15476

Уязвимость программной платформы ColdFusion, связанная с недостаточной проверкой входных данных, позволяющая нарушителю записать произвольные файлы в системе

CVSS3: 6.2
0%
Низкий
2 месяца назад

Уязвимостей на страницу