CVE-2019-7838
12.06.2019, 16:29
ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a file extension blacklist bypass vulnerability. Successful exploitation could lead to arbitrary code execution.Enginsight
Vendor | Product | Version |
---|---|---|
adobe | coldfusion | 11.0 |
adobe | coldfusion | 11.0:update1 |
adobe | coldfusion | 11.0:update10 |
adobe | coldfusion | 11.0:update11 |
adobe | coldfusion | 11.0:update12 |
adobe | coldfusion | 11.0:update13 |
adobe | coldfusion | 11.0:update14 |
adobe | coldfusion | 11.0:update15 |
adobe | coldfusion | 11.0:update16 |
adobe | coldfusion | 11.0:update17 |
adobe | coldfusion | 11.0:update18 |
adobe | coldfusion | 11.0:update2 |
adobe | coldfusion | 11.0:update3 |
adobe | coldfusion | 11.0:update4 |
adobe | coldfusion | 11.0:update5 |
adobe | coldfusion | 11.0:update6 |
adobe | coldfusion | 11.0:update7 |
adobe | coldfusion | 11.0:update8 |
adobe | coldfusion | 11.0:update9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration