PT-2018-16640 · Adobe · Coldfusion

Published

2018-05-19

·

Updated

2025-05-06

·

CVE-2018-4938

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Adobe ColdFusion versions Update 5 and earlier Adobe ColdFusion 11 versions Update 13 and earlier
Description The issue is related to an Insecure Library Loading vulnerability. Successful exploitation could lead to local privilege escalation.
Recommendations For Adobe ColdFusion versions Update 5 and earlier, update to a version later than Update 5. For Adobe ColdFusion 11 versions Update 13 and earlier, update to a version later than Update 13.

Fix

LPE

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

CVE-2018-4938

Affected Products

Coldfusion