← Back

CVE-2017-3008

nvd nist
Published: Apr 27, 2017Modified: May 13, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

Adobe ColdFusion 2016 Update 3 and earlier, ColdFusion 11 update 11 and earlier, ColdFusion 10 Update 22 and earlier have a reflected cross-site scripting vulnerability.

Affected (39)

Products: Adobe: Coldfusion
1 product
Coldfusion
Configuration A
39 vulnerable
Vulnerable SoftwareAffected Versions
Adobe
Version 10.0
Version 10.0 update10
Version 10.0 update11
Version 10.0 update12
Version 10.0 update13
Version 10.0 update14
Version 10.0 update15
Version 10.0 update16
Version 10.0 update17
Version 10.0 update18
Version 10.0 update19
Version 10.0 update1
Version 10.0 update20
Version 10.0 update21
Version 10.0 update22
Version 10.0 update2
Version 10.0 update3
Version 10.0 update4
Version 10.0 update5
Version 10.0 update6
Version 10.0 update7
Version 10.0 update8
Version 10.0 update9
Version 11.0
Version 11.0 update10
Version 11.0 update11
Version 11.0 update1
Version 11.0 update2
Version 11.0 update3
Version 11.0 update4
Version 11.0 update5
Version 11.0 update6
Version 11.0 update7
Version 11.0 update8
Version 11.0 update9
Version 2016
Version 2016 update1
Version 2016 update2
Version 2016 update3

References (6)

Source: psirt@adobe.com
Third Party AdvisoryVDB Entry
Source: psirt@adobe.com
Third Party AdvisoryVDB Entry
Source: psirt@adobe.com
MitigationPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationPatchVendor Advisory

Timeline

No history available yet.