← Back to browse · API

CVE-2018-15965

Severity
CRITICAL
CVSS
9.8
EPSS
0.25856
Risk score
48.25
CISA KEV
No
PoC
No
Published
2018-09-25
Modified
2025-05-06
First seen
2026-08-07
Aliases
EUVD-2018-7821, GHSA-PXW5-GW5P-C5CC
Products
Adobe:ColdFusion July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier versions
Sources
euvd EUVD-2018-7821

Description

Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.

References