Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | ColdFusion | 0 ~ 2023.0.0.330468 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | An attacker is able to access every CFM and CFC endpoint within the ColdFusion Administrator path /CFIDE/, of which there are 437 CFM files and 96 CFC files in a ColdFusion 2021 Update 6 install. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-29298.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-29300 | 9.8 CRITICAL | Adobe ColdFusion Deserialization of Untrusted Data Arbitrary code execution |
| CVE-2021-43757 | 7.8 HIGH | Adobe Media Encoder 3GP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerabilit |
| CVE-2023-29308 | 7.8 HIGH | [FG-VD-23-009] Adobe InDesign 2023 Arbitrary Code Execution Vulnerability Notification |
| CVE-2023-29301 | 7.5 HIGH | Adobe ColdFusion Improper Restriction of Excessive Authentication Attempts Security featur |
| CVE-2023-29315 | 5.5 MEDIUM | [FG-VD-23-008] Adobe InDesign 2023 Out-of-Bound Read Vulnerability VI Notification |
| CVE-2023-29311 | 5.5 MEDIUM | [FG-VD-23-006] Adobe InDesign 2023 Out-of-Bound Read Vulnerability IV Notification |
| CVE-2023-29314 | 5.5 MEDIUM | [FG-VD-23-013] Adobe InDesign 2023 Out-of-Bound Read Vulnerability X Notification |
| CVE-2023-29312 | 5.5 MEDIUM | [FG-VD-23-004] Adobe InDesign 2023 Out-of-Bound Read Vulnerability II Notification |
| CVE-2023-29309 | 5.5 MEDIUM | [FG-VD-23-003] Adobe InDesign 2023 Out-of-Bound Read Vulnerability Notification |
| CVE-2023-29318 | 5.5 MEDIUM | [FG-VD-23-011] Adobe InDesign 2023 Out-of-Bound Read Vulnerability VIII Notification |
| CVE-2023-29317 | 5.5 MEDIUM | [FG-VD-23-005] Adobe InDesign 2023 Out-of-Bound Read Vulnerability III Notification |
| CVE-2023-29313 | 5.5 MEDIUM | [FG-VD-23-014] Adobe InDesign 2023 Out-of-Bound Read Vulnerability XI Notification |
| CVE-2023-29316 | 5.5 MEDIUM | [FG-VD-23-012] Adobe InDesign 2023 Out-of-Bound Read Vulnerability IX Notification |
| CVE-2023-29319 | 5.5 MEDIUM | [FG-VD-23-010] Adobe InDesign 2023 Out-of-Bound Read Vulnerability VII Notification |
| CVE-2023-29310 | 5.5 MEDIUM | [FG-VD-23-007] Adobe InDesign 2023 Out-of-Bound Read Vulnerability V Notification |
| CVE-2021-43760 | 3.3 LOW | Adobe Media Encoder MOV File Parsing Out-Of-Bounds Read Information Disclosure Vulnerabili |
| CVE-2021-44696 | 3.3 LOW | Adobe Prelude JPEG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability |
| CVE-2021-43758 | 3.3 LOW | Adobe Media Encoder MP4 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerabili |
| CVE-2021-43759 | 3.3 LOW | Adobe Media Encoder MP4 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerabili |
No comments yet