← Back to browse · API

CVE-2018-15957

Severity
CRITICAL
CVSS
9.8
EPSS
0.28211
Risk score
49.07
CISA KEV
No
PoC
No
Published
2018-09-25
Modified
2025-05-06
First seen
2026-08-07
Aliases
EUVD-2018-7813, GHSA-7QW7-CWHJ-Q8CG
Products
Adobe:ColdFusion July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier versions
Sources
euvd EUVD-2018-7813

Description

Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.

References