Adobe ColdFusion 2016 update 15 and earlier versions, and ColdFusion 2018 update 9 and earlier versions have a dll search-order hijacking vulnerability. Successful exploitation could lead to privilege escalation.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2020-07-17T00:00:52
Updated: 2024-08-04T10:34:39.917Z
Reserved: 2020-03-02T00:00:00
Link: CVE-2020-9672
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-07-17T00:15:11.917
Modified: 2020-09-04T14:22:04.897
Link: CVE-2020-9672
Redhat
No data.