Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-38420


Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by a Use of Hard-coded Credentials vulnerability that could result in application denial-of-service by gaining access to start/stop arbitrary services. Exploitation of this issue does not require user interaction.


Published

2022-10-14T20:15:12.893

Last Modified

2024-11-21T07:16:26.470

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-798

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2018 Yes
Application adobe coldfusion 2021 Yes
Application adobe coldfusion 2021 Yes
Application adobe coldfusion 2021 Yes
Application adobe coldfusion 2021 Yes
Application adobe coldfusion 2021 Yes

References