Information Disclosure Vulnerability in Adobe ColdFusion Builder
CVE-2016-7887

7.5HIGH

Key Information:

Summary

Adobe ColdFusion Builder versions 2016 Update 2 and earlier, along with versions 3.0.3 and earlier, are susceptible to a vulnerability that could allow unauthorized information disclosure. This security issue may be exploited by attackers to gain unauthorized access to sensitive data, impacting the overall security of the application. Adobe has provided detailed guidelines and fixes to mitigate the effects of this vulnerability.

Affected Version(s)

Adobe ColdFusion Builder 2016 update 2 and earlier, 3.0.3 and earlier Adobe ColdFusion Builder 2016 update 2 and earlier, 3.0.3 and earlier

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.