CVE-2024-45113: ColdFusion | Improper Authentication (CWE-287)
ColdFusion versions 2023.6, 2021.12 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain unauthorized access and affect the integrity of the application. Exploitation of this issue does not require user interaction.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-45113?
CVE-2024-45113 has been classified as a high-severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2024-45113?
To fix CVE-2024-45113, update Adobe ColdFusion to the latest version or apply the available patches.
What versions of ColdFusion are affected by CVE-2024-45113?
CVE-2024-45113 affects Adobe ColdFusion versions 2023.6, 2021.12, and earlier releases.
What kind of attack does CVE-2024-45113 enable?
CVE-2024-45113 enables an attacker to exploit improper authentication, leading to unauthorized access.
Can CVE-2024-45113 impact the integrity of my applications?
Yes, exploitation of CVE-2024-45113 can compromise the integrity of applications running on affected ColdFusion versions.