Information Disclosure Vulnerability in Adobe ColdFusion Builder
CVE-2016-7887
7.5HIGH
Key Information:
- Vendor
- Adobe
- Vendor
- CVE Published:
- 15 December 2016
Summary
Adobe ColdFusion Builder versions 2016 Update 2 and earlier, along with versions 3.0.3 and earlier, are susceptible to a vulnerability that could allow unauthorized information disclosure. This security issue may be exploited by attackers to gain unauthorized access to sensitive data, impacting the overall security of the application. Adobe has provided detailed guidelines and fixes to mitigate the effects of this vulnerability.
Affected Version(s)
Adobe ColdFusion Builder 2016 update 2 and earlier, 3.0.3 and earlier Adobe ColdFusion Builder 2016 update 2 and earlier, 3.0.3 and earlier
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved