Adobe ColdFusion versions 2018 Update 15 (and earlier) and 2021 Update 5 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in Arbitrary file system read. Exploitation of this issue does not require user interaction, but does require administrator privileges.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 05 Mar 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2025-03-05T19:22:22.522Z
Reserved: 2023-02-22T00:00:00.000Z
Link: CVE-2023-26361
Updated: 2024-08-02T11:46:24.525Z
Status : Modified
Published: 2023-03-23T20:15:15.373
Modified: 2024-11-21T07:51:12.133
Link: CVE-2023-26361
No data.
OpenCVE Enrichment
No data.
Weaknesses