高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| ベンダー | プロダクト | 影響を受けるバージョン | CPE | 購読 |
|---|---|---|---|---|
| Adobe | ColdFusion | 0 ~ 2021.22 | - |
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2025-61811 | 9.1 CRITICAL | ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal' |
| CVE-2025-61808 | 9.1 CRITICAL | ColdFusion | Unrestricted Upload of File with Dangerous Type (CWE-434) |
| CVE-2025-61809 | 9.1 CRITICAL | ColdFusion | Improper Input Validation (CWE-20) |
| CVE-2025-61810 | 8.4 HIGH | ColdFusion | Deserialization of Untrusted Data (CWE-502) |
| CVE-2025-61812 | 8.4 HIGH | ColdFusion | Improper Input Validation (CWE-20) |
| CVE-2025-61813 | 8.2 HIGH | ColdFusion | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611) |
| CVE-2025-64785 | 7.8 HIGH | Acrobat Reader | Untrusted Search Path (CWE-426) |
| CVE-2025-64899 | 7.8 HIGH | Acrobat Reader | Out-of-bounds Read (CWE-125) |
| CVE-2025-64783 | 7.8 HIGH | DNG SDK | Integer Overflow or Wraparound (CWE-190) |
| CVE-2025-64784 | 7.1 HIGH | DNG SDK | Heap-based Buffer Overflow (CWE-122) |
| CVE-2025-64893 | 7.1 HIGH | DNG SDK | Out-of-bounds Read (CWE-125) |
| CVE-2025-61821 | 6.8 MEDIUM | ColdFusion | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611) |
| CVE-2025-61822 | 6.2 MEDIUM | ColdFusion | Improper Input Validation (CWE-20) |
| CVE-2025-64897 | 5.6 MEDIUM | ColdFusion | Improper Access Control (CWE-284) |
| CVE-2025-64896 | 5.5 MEDIUM | Creative Cloud Desktop | Creation of Temporary File in Directory with Incorrect Permission |
| CVE-2025-64894 | 5.5 MEDIUM | DNG SDK | Integer Overflow or Wraparound (CWE-190) |
| CVE-2025-64898 | 4.3 MEDIUM | ColdFusion | Insufficiently Protected Credentials (CWE-522) |
| CVE-2025-64787 | 3.3 LOW | Acrobat Reader | Improper Verification of Cryptographic Signature (CWE-347) |
| CVE-2025-64786 | 3.3 LOW | Acrobat Reader | Improper Verification of Cryptographic Signature (CWE-347) |
まだコメントはありません