ColdFusion versions 2023u7, 2021u13 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary file system read. An attacker could exploit this vulnerability to gain unauthorized access to sensitive files or data. Exploitation of this issue does not require user interaction.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published: 2024-06-13T11:27:15.891Z

Updated: 2024-08-02T02:42:59.893Z

Reserved: 2024-04-30T19:50:50.903Z

Link: CVE-2024-34112

cve-icon Vulnrichment

Updated: 2024-08-02T02:42:59.893Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-13T12:15:10.870

Modified: 2024-06-13T18:35:19.777

Link: CVE-2024-34112

cve-icon Redhat

No data.