Логотип exploitDog
bind:CVE-2025-64898
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-64898

Количество 3

Количество 3

nvd логотип

CVE-2025-64898

9 дней назад

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Insufficiently Protected Credentials vulnerability that could result in limited unauthorized write access. An attacker could leverage this vulnerability to gain unauthorized access by exploiting improperly stored or transmitted credentials. Exploitation of this issue does not require user interaction.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-q76w-cpf4-58gv

9 дней назад

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Insufficiently Protected Credentials vulnerability that could result in limited unauthorized write access. An attacker could leverage this vulnerability to gain unauthorized access by exploiting improperly stored or transmitted credentials. Exploitation of this issue does not require user interaction.

CVSS3: 4.3
EPSS: Низкий
fstec логотип

BDU:2025-15571

10 дней назад

Уязвимость программной платформы ColdFusion, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю повысить свои привилегии

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-64898

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Insufficiently Protected Credentials vulnerability that could result in limited unauthorized write access. An attacker could leverage this vulnerability to gain unauthorized access by exploiting improperly stored or transmitted credentials. Exploitation of this issue does not require user interaction.

CVSS3: 4.3
0%
Низкий
9 дней назад
github логотип
GHSA-q76w-cpf4-58gv

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Insufficiently Protected Credentials vulnerability that could result in limited unauthorized write access. An attacker could leverage this vulnerability to gain unauthorized access by exploiting improperly stored or transmitted credentials. Exploitation of this issue does not require user interaction.

CVSS3: 4.3
0%
Низкий
9 дней назад
fstec логотип
BDU:2025-15571

Уязвимость программной платформы ColdFusion, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю повысить свои привилегии

CVSS3: 4.3
0%
Низкий
10 дней назад

Уязвимостей на страницу