7.5
CVSSv3

CVE-2023-38205

Published: 14/09/2023 Updated: 19/09/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Adobe ColdFusion versions 2018u18 (and previous versions), 2021u8 (and previous versions) and 2023u2 (and previous versions) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

adobe coldfusion 2018

adobe coldfusion 2021

adobe coldfusion 2023

Vendor Advisories

Check Point Reference: CPAI-2023-0604 Date Published: 7 Aug 2023 Severity: High ...