← Back to browse · API

CVE-2023-44351

Severity
CRITICAL
CVSS
9.8
EPSS
0.5016
Risk score
56.76
CISA KEV
No
PoC
No
Published
2023-11-17
Modified
2024-09-04
First seen
2026-08-07
Aliases
EUVD-2023-48705, GHSA-C646-Q547-Q9P8
Products
Adobe:ColdFusion 0 ≤2021.11
Sources
euvd EUVD-2023-48705

Description

Adobe ColdFusion versions 2023.5 (and earlier) and 2021.11 (and earlier) are affected by an Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction.

References