CNNVD-202512-1749 Information

CNNVD ID

CNNVD-202512-1749

CVE-2025-64898

  • CNNVD Published: 2025-12-10

Description (Chinese)

Adobe ColdFusion是美国奥多比(Adobe)公司的一套快速应用程序开发平台。该平台包括集成开发环境和脚本语言。 Adobe ColdFusion 2025.4版本、2023.16版本、2021.22版本及之前版本存在安全漏洞,该漏洞源于凭据保护不足,可能导致未经授权的写入访问。

Description (English)

Adobe ColdFusion is a fast-track application development platform for Adobe in the United States. The platform includes an integrated development environment and script language. There is a security loophole in Adobe ColdFusion 2025.4, 2023.16, 2021.22 and earlier versions, which stems from inadequate evidence-based protection and may lead to unauthorized writing access.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

奥多比

Published

2025-12-10

Last Modified

2026-02-24

References

https://helpx.adobe.com/security/products/coldfusion/apsb25-105.html

Patch

https://helpx.adobe.com/security/products/coldfusion/apsb25-105.html

Share on: