← Back to browse · API

CVE-2023-29301

Severity
HIGH
CVSS
7.5
EPSS
0.31823
Risk score
41.14
CISA KEV
No
PoC
No
Published
2023-07-12
Modified
2025-03-05
First seen
2026-08-07
Aliases
EUVD-2023-32876, GHSA-WQ58-62G3-92FC
Products
Adobe:ColdFusion 0 ≤2023.0.0.330468
Sources
euvd EUVD-2023-32876

Description

Adobe ColdFusion versions 2018u16 (and earlier), 2021u6 (and earlier) and 2023.0.0.330468 (and earlier) are affected by an Improper Restriction of Excessive Authentication Attempts vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to impact the confidentiality of the user. Exploitation of this issue does not require user interaction.

References