CVE-2019-7816: Malicious File Upload
ColdFusion versions Update 2 and earlier, Update 9 and earlier, and Update 17 and earlier have a file upload restriction bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-7816?
CVE-2019-7816 is a vulnerability in ColdFusion versions Update 2 and earlier, Update 9 and earlier, and Update 17 and earlier, which allows for file upload restriction bypass and could lead to arbitrary code execution.
How severe is CVE-2019-7816?
CVE-2019-7816 has a severity rating of 9.8 out of 10, which is classified as critical.
Which versions of ColdFusion are affected by CVE-2019-7816?
CVE-2019-7816 affects ColdFusion versions 11.0, 2016, and 2018 (including various updates for each version).
How can CVE-2019-7816 be exploited?
Successful exploitation of CVE-2019-7816 could lead to arbitrary code execution.
Where can I find more information about CVE-2019-7816?
More information about CVE-2019-7816 can be found at the following reference: [link](https://helpx.adobe.com/security/products/coldfusion/apsb19-14.html)