Lucene search

K
adobeAdobeAPSB24-14
HistoryMar 12, 2024 - 12:00 a.m.

APSB24-14 : Security update available for Adobe ColdFusion

2024-03-1200:00:00
helpx.adobe.com
16
adobe
coldfusion
security update
vulnerability
file system

8.2 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

7.4 High

AI Score

Confidence

Low

0.088 Low

EPSS

Percentile

94.6%

Adobe has released security updates for ColdFusion versions 2023 and 2021. These updates resolve a critical vulnerability that could lead to arbitrary file system read.

8.2 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

7.4 High

AI Score

Confidence

Low

0.088 Low

EPSS

Percentile

94.6%