Security Advisory

CVE-2023-38204

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-09-14 07:40:13
Last updated 2025-02-27 20:52:25
Assigner adobe
CVSS score 9.8
State PUBLISHED

Description

Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by a Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction.