CVE-2019-8256: Critical severity Adobe ColdFusion vulnerability
Published Dec 19, 2019
·Updated
ColdFusion versions Update 6 and earlier have an insecure inherited permissions of default installation directory vulnerability. Successful exploitation could lead to privilege escalation.
Affected Software
7 affected components
Adobe ColdFusion=2018
Adobe ColdFusion=2018-update1
Adobe ColdFusion=2018-update2
Adobe ColdFusion=2018-update3
Adobe ColdFusion=2018-update4
Adobe ColdFusion=2018-update5
Adobe ColdFusion=2018-update6
Event History
Dec 19, 2019
CVE Published
via MITRE·07:40 PM
Data Sourced
via MITRE·07:40 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this ColdFusion vulnerability?
The vulnerability ID for this ColdFusion vulnerability is CVE-2019-8256.
2
What is the severity level of CVE-2019-8256?
The severity level of CVE-2019-8256 is critical.
3
Which versions of ColdFusion are affected by CVE-2019-8256?
ColdFusion versions Update 6 and earlier are affected by CVE-2019-8256.
4
What is the impact of exploiting CVE-2019-8256?
Successful exploitation of CVE-2019-8256 could lead to privilege escalation.
5
Where can I find more information about CVE-2019-8256?
You can find more information about CVE-2019-8256 at https://helpx.adobe.com/security/products/coldfusion/apsb19-58.html.