← Back

CVE-2019-8073

nvd nist
Published: Sep 27, 2019Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

ColdFusion 2018- update 4 and earlier and ColdFusion 2016- update 11 and earlier have a Command Injection via Vulnerable component vulnerability. Successful exploitation could lead to Arbitrary code execution in the context of the current user.

Affected (17)

Products: Adobe: Coldfusion
1 product
Coldfusion
Configuration A
17 vulnerable
Vulnerable SoftwareAffected Versions
Adobe
Version 2016
Version 2016 update10
Version 2016 update11
Version 2016 update1
Version 2016 update2
Version 2016 update3
Version 2016 update4
Version 2016 update5
Version 2016 update6
Version 2016 update7
Version 2016 update8
Version 2016 update9
Version 2018
Version 2018 update1
Version 2018 update2
Version 2018 update3
Version 2018 update4

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.