Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2014-0570

Cross-site request forgery (CSRF) vulnerability in Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

  • Published: Oct 15, 2014
  • Updated: Apr 13, 2023
  • CVE: CVE-2014-0570
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
adobe / coldfusion 9.0.1-update_9 9.0.1-update_9.x
adobe / coldfusion 9.0.2-update_6 9.0.2-update_6.x
adobe / coldfusion 11.0 11.0.x
adobe / coldfusion 9.0.2 9.0.2.x
adobe / coldfusion 9.0 9.0.x
adobe / coldfusion 9.0-update_12 9.0-update_12.x
adobe / coldfusion 10.0 10.0.x
adobe / coldfusion 9.0.1-update_11 9.0.1-update_11.x
adobe / coldfusion 9.0.2-update_4 9.0.2-update_4.x
adobe / coldfusion 9.0.1 9.0.1.x
adobe / coldfusion 9.0-update_10 9.0-update_10.x
adobe / coldfusion 10.0-update1 10.0-update1.x
adobe / coldfusion 10.0-update11 10.0-update11.x
adobe / coldfusion 10.0-update12 10.0-update12.x
adobe / coldfusion 10.0-update2 10.0-update2.x
adobe / coldfusion 10.0-update3 10.0-update3.x
adobe / coldfusion 10.0-update4 10.0-update4.x
adobe / coldfusion 10.0-update8 10.0-update8.x