CVE-2011-0629Cross-Site Request Forgery in Adobe Coldfusion

Severity
6.8MEDIUMNVD
EPSS
0.2%
top 54.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 16
Latest updateMay 17

Description

Cross-site request forgery (CSRF) vulnerability in Adobe ColdFusion 8.0, 8.0.1, 9.0, and 9.0.1 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages1 packages

NVDadobe/coldfusion4 versions+3

Patches

🔴Vulnerability Details

2
GHSA
GHSA-7x69-vj7p-23wv: Cross-site request forgery (CSRF) vulnerability in Adobe ColdFusion 82022-05-17
CVEList
CVE-2011-0629: Cross-site request forgery (CSRF) vulnerability in Adobe ColdFusion 82011-06-16
CVE-2011-0629 — Cross-Site Request Forgery in Adobe | cvebase