Adobe ColdFusion Improper Access Control (CVE-2023-38205; CVE-2023-44347; CVE-2023-44353)

Related Vulnerabilities: CVE-2023-38205   CVE-2023-44347   CVE-2023-44353  

Check Point Reference: CPAI-2023-0604 Date Published: 7 Aug 2023 Severity: High Last Updated: Sunday 26 November, 2023 Source: Industry Reference:CVE-2023-38205
CVE-2023-44347
CVE-2023-44353
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Adobe ColdFusion 2018 update 18 and earlier
Adobe ColdFusion 2021 update 8 and earlier
Adobe ColdFusion 2023 update 2 and earlier Vulnerability Description An improper access control vulnerability exists in Adobe ColdFusion. Successful exploitation of this vulnerability could allow a remote attacker to read sensitive files on the affected system.