CVE-2013-0631
גבוהה 7.5 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Adobe ColdFusion Information Disclosure Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply updates per vendor instructions.
תיאור (מקור, אנגלית)
Adobe ColdFusion 9.0, 9.0.1, and 9.0.2 allows attackers to obtain sensitive information via unspecified vectors, as exploited in the wild in January 2013.
מדדים
- CVSS 3.1
-
7.5 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N - EPSS — סבירות ניצול
- 66% (אחוזון 100) נכון ל-24/7/2026
מוצרים מושפעים
adobe: coldfusion; apple: mac os x; microsoft: windows; opengroup: unix
קישורים
- http://www.adobe.com/support/security/advisories/apsa13-01.html Vendor Advisory
- http://www.adobe.com/support/security/advisories/apsa13-01.html Vendor Advisory
- http://www.adobe.com/support/security/bulletins/apsb13-03.html Not Applicable
- http://www.adobe.com/support/security/bulletins/apsb13-03.html Not Applicable
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-201… US Government Resource