Beveiligingsadvies

CVE-2022-38424

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-10-14 19:42:57
Laatst bijgewerkt 2025-04-23 16:48:16
Toegewezen door adobe
CVSS-score 7.2
Status PUBLISHED

Beschrijving

Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary file system write. Exploitation of this issue does not require user interaction, but does require administrator privileges.