← Zurück zur CVE-Suche

CVE-2026-48321

ColdFusion

Beschreibung

ColdFusion is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability to gain unauthorized read and write access. The vulnerable component is restricted to an administrative network zone by default. Exploitation of this issue does not require user interaction. Scope is changed.

CVSS 9.3EPSS 0.471%Risiko 0.97
Quelle öffnen
Veröffentlicht
2026-07-14 21:16:58
Betroffene Versionen
unknown
Typ
Kritische Software
Zuletzt geändert
2026-08-05 17:32:10
Vektor
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N