CVE Vulnerabilities

CVE-2020-3796

Published: Jun 26, 2020 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an improper access control vulnerability. Successful exploitation could lead to system file structure disclosure.

Affected Software

NameVendorStart VersionEnd Version
ColdfusionAdobe2016 (including)2016 (including)
ColdfusionAdobe2016-update1 (including)2016-update1 (including)
ColdfusionAdobe2016-update10 (including)2016-update10 (including)
ColdfusionAdobe2016-update11 (including)2016-update11 (including)
ColdfusionAdobe2016-update12 (including)2016-update12 (including)
ColdfusionAdobe2016-update13 (including)2016-update13 (including)
ColdfusionAdobe2016-update14 (including)2016-update14 (including)
ColdfusionAdobe2016-update2 (including)2016-update2 (including)
ColdfusionAdobe2016-update3 (including)2016-update3 (including)
ColdfusionAdobe2016-update4 (including)2016-update4 (including)
ColdfusionAdobe2016-update5 (including)2016-update5 (including)
ColdfusionAdobe2016-update6 (including)2016-update6 (including)
ColdfusionAdobe2016-update7 (including)2016-update7 (including)
ColdfusionAdobe2016-update8 (including)2016-update8 (including)
ColdfusionAdobe2016-update9 (including)2016-update9 (including)
ColdfusionAdobe2018 (including)2018 (including)
ColdfusionAdobe2018-update1 (including)2018-update1 (including)
ColdfusionAdobe2018-update2 (including)2018-update2 (including)
ColdfusionAdobe2018-update3 (including)2018-update3 (including)
ColdfusionAdobe2018-update4 (including)2018-update4 (including)
ColdfusionAdobe2018-update5 (including)2018-update5 (including)
ColdfusionAdobe2018-update6 (including)2018-update6 (including)
ColdfusionAdobe2018-update7 (including)2018-update7 (including)
ColdfusionAdobe2018-update8 (including)2018-update8 (including)

References