← Back to browse · API

CVE-2023-44350

Severity
CRITICAL
CVSS
9.8
EPSS
0.64558
Risk score
61.8
CISA KEV
No
PoC
No
Published
2023-11-17
Modified
2024-09-16
First seen
2026-08-07
Aliases
EUVD-2023-48704, GHSA-65R5-5H5R-23QC
Products
Adobe:ColdFusion 0 ≤2021.11
Sources
euvd EUVD-2023-48704

Description

Adobe ColdFusion versions 2023.5 (and earlier) and 2021.11 (and earlier) are affected by an Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction.

References