ColdFusion versions 2023u7, 2021u13 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary file system read. An attacker could exploit this vulnerability to gain unauthorized access to sensitive files or data. Exploitation of this issue does not require user interaction.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2024-06-13T11:27:15.891Z
Updated: 2024-08-02T02:42:59.893Z
Reserved: 2024-04-30T19:50:50.903Z
Link: CVE-2024-34112
Vulnrichment
Updated: 2024-08-02T02:42:59.893Z
NVD
Status : Awaiting Analysis
Published: 2024-06-13T12:15:10.870
Modified: 2024-06-13T18:35:19.777
Link: CVE-2024-34112
Redhat
No data.