Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
coldfusion vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2020-3794
ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a file inclusion vulnerability. Successful exploitation could lead to arbitrary code execution of files located in the webroot or its subdirectory.
Adobe Coldfusion 2016
Adobe Coldfusion 2018
10
CVSSv2
CVE-2019-8074
ColdFusion 2018- update 4 and previous versions and ColdFusion 2016- update 11 and previous versions have a Path Traversal vulnerability. Successful exploitation could lead to Access Control Bypass in the context of the current user.
Adobe Coldfusion 2016
Adobe Coldfusion 2018
1 Article
10
CVSSv2
CVE-2019-8073
ColdFusion 2018- update 4 and previous versions and ColdFusion 2016- update 11 and previous versions have a Command Injection via Vulnerable component vulnerability. Successful exploitation could lead to Arbitrary code execution in the context of the current user.
Adobe Coldfusion 2016
Adobe Coldfusion 2018
1 Article
10
CVSSv2
CVE-2019-7838
ColdFusion versions Update 3 and previous versions, Update 10 and previous versions, and Update 18 and previous versions have a file extension blacklist bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
Adobe Coldfusion 11.0
Adobe Coldfusion 2016
Adobe Coldfusion 2018
1 Article
10
CVSSv2
CVE-2019-7839
ColdFusion versions Update 3 and previous versions, Update 10 and previous versions, and Update 18 and previous versions have a command injection vulnerability. Successful exploitation could lead to arbitrary code execution.
Adobe Coldfusion 11.0
Adobe Coldfusion 2016
Adobe Coldfusion 2018
1 Article
10
CVSSv2
CVE-2019-7840
ColdFusion versions Update 3 and previous versions, Update 10 and previous versions, and Update 18 and previous versions have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.
Adobe Coldfusion 11.0
Adobe Coldfusion 2016
Adobe Coldfusion 2018
1 Article
10
CVSSv2
CVE-2019-7091
ColdFusion versions Update 1 and previous versions, Update 7 and previous versions, and Update 15 and previous versions have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.
Adobe Coldfusion 11.0
Adobe Coldfusion 2018
Adobe Coldfusion 2016
10
CVSSv2
CVE-2019-7816
ColdFusion versions Update 2 and previous versions, Update 9 and previous versions, and Update 17 and previous versions have a file upload restriction bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
Adobe Coldfusion 2018
Adobe Coldfusion 2016
Adobe Coldfusion 11.0
1 Article
10
CVSSv2
CVE-2018-15957
Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and previous versions, and Update 14 and previous versions have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.
Adobe Coldfusion 11.0
Adobe Coldfusion 2016
Adobe Coldfusion 2018
10
CVSSv2
CVE-2018-15965
Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and previous versions, and Update 14 and previous versions have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.
Adobe Coldfusion 2016
Adobe Coldfusion 11.0
Adobe Coldfusion 2018
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-3675
CVE-2024-3400
CVE-2024-23557
mass assignment
CVE-2023-1389
local file inclusion
CVE-2024-32596
file upload
CVE-2024-32593
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »