Cross-Site Scripting in Adobe ColdFusion by Adobe
CVE-2018-4940
Key Information:
- Vendor
Adobe
- Vendor
- CVE Published:
- 19 May 2018
What is CVE-2018-4940?
Adobe ColdFusion versions Update 5 and earlier, as well as ColdFusion 11 Update 13 and earlier, contain a vulnerability that enables Cross-Site Scripting (XSS) attacks. This security flaw can be exploited by malicious actors to potentially disclose sensitive information from affected systems. It is critical for users of the impacted versions to evaluate their environment and apply necessary patches to prevent exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Adobe ColdFusion ColdFusion Update 5 and earlier , ColdFusion 11 Update 13 and earlier Adobe ColdFusion ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved