Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by a Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2025-02-27T20:52:25.205Z
Reserved: 2023-07-13T16:21:52.612Z
Link: CVE-2023-38204
Updated: 2024-08-02T17:30:14.190Z
Status : Modified
Published: 2023-09-14T08:15:07.617
Modified: 2024-11-21T08:13:04.777
Link: CVE-2023-38204
No data.
OpenCVE Enrichment
No data.
Weaknesses