Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-3768

EPSS 0.14% · P34
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-3768

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a dll search-order hijacking vulnerability. Successful exploitation could lead to privilege escalation.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Adobe ColdFusion 代码问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Adobe ColdFusion是美国奥多比(Adobe)公司的一套快速应用程序开发平台。该平台包括集成开发环境和脚本语言。 Adobe ColdFusion 2016 Update 14及之前版本和2018 Update 8之前版本中存在安全漏洞。攻击者可利用该漏洞提升权限。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
AdobeColdFusion ColdFusion 2016, and ColdFusion 2018 versions -

II. Public POCs for CVE-2020-3768

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-3768

登录查看更多情报信息。

Same Patch Batch · Adobe · 2020-06-26 · 58 CVEs total

CVE-2020-3767Adobe ColdFusion 输入验证错误漏洞
CVE-2020-9631Adobe Magento 安全漏洞
CVE-2020-3796Adobe ColdFusion 信息泄露漏洞
CVE-2020-9588Adobe Magento 安全漏洞
CVE-2020-9578Adobe Magento 操作系统操作系统命令注入漏洞
CVE-2020-3809Adobe After Effects 缓冲区错误漏洞
CVE-2020-9587Adobe Magento 安全漏洞
CVE-2020-9584Adobe Magento 跨站脚本漏洞
CVE-2020-9579Adobe Magento 安全漏洞
CVE-2020-9585Adobe Magento 安全漏洞
CVE-2020-9583Adobe Magento 操作系统操作系统命令注入漏洞
CVE-2020-9574Adobe Illustrator 缓冲区错误漏洞
CVE-2020-9572Adobe Illustrator 缓冲区错误漏洞
CVE-2020-9570Adobe Illustrator 缓冲区错误漏洞
CVE-2020-9573Adobe Illustrator 缓冲区错误漏洞
CVE-2020-9571Adobe Illustrator 缓冲区错误漏洞
CVE-2020-9563Adobe Bridge 缓冲区错误漏洞
CVE-2020-9564Adobe Bridge 缓冲区错误漏洞
CVE-2020-9557Adobe Bridge 缓冲区错误漏洞
CVE-2020-9556Adobe Bridge 缓冲区错误漏洞

Showing top 20 of 58 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2020-3768

No comments yet


Leave a comment