logo

CVE-2023-29298 - Adobe ColdFusion Improper Access Control Vulnerability

CVE-2023-29298

Adobe | ColdFusion

  • Date Added:
  • 2023-07-20
  • Due Date:
  • 2023-08-10
Vulnerability Name

Adobe ColdFusion Improper Access Control Vulnerability

Description

Adobe ColdFusion contains an improper access control vulnerability that allows for a security feature bypass.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Additional Notes
https://helpx.adobe.com/security/products/coldfusion/apsb23-40.html; https://nvd.nist.gov/vuln/detail/CVE-2023-29298
Related News Articles

Free security scan for your website