Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-29298
HistoryJul 12, 2023 - 4:15 p.m.

Improper access control

2023-07-1216:15:00
PRIOn knowledge base
www.prio-n.com
8
adobe
coldfusion
access control
vulnerability
security feature bypass
administration endpoints
exploitation

7.3 High

AI Score

Confidence

High

0.944 High

EPSS

Percentile

99.2%

Adobe ColdFusion versions 2018u16 (and earlier), 2021u6 (and earlier) and 2023.0.0.330468 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction.

7.3 High

AI Score

Confidence

High

0.944 High

EPSS

Percentile

99.2%