This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:adobe:coldfusion:11.0:update_2
Detail
VendorAdobeFirst view 2014-12-10
ProductColdfusionLast view2019-06-12
Version11.0TypeApplication
Edition 
Language 
Updateupdate_2 
 
CPE Productcpe:/a:adobe:coldfusion

Activity : Overall

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
 DateAlertAccess VectorAccess ComplexityAuthentication
102019-06-12CVE-2019-7840NetworkLowNone Requ...
102019-06-12CVE-2019-7839NetworkLowNone Requ...
102019-06-12CVE-2019-7838NetworkLowNone Requ...
102019-05-24CVE-2019-7816NetworkLowNone Requ...
4.32019-05-24CVE-2019-7092NetworkMediumNone Requ...
Hide | Show 20 More...
 DateAlertAccess VectorAccess ComplexityAuthentication
102019-05-24CVE-2019-7091NetworkLowNone Requ...
102018-09-25CVE-2018-15965NetworkLowNone Requ...
52018-09-25CVE-2018-15964NetworkLowNone Requ...
52018-09-25CVE-2018-15963NetworkLowNone Requ...
52018-09-25CVE-2018-15962NetworkLowNone Requ...
102018-09-25CVE-2018-15961NetworkLowNone Requ...
6.42018-09-25CVE-2018-15960NetworkLowNone Requ...
102018-09-25CVE-2018-15959NetworkLowNone Requ...
102018-09-25CVE-2018-15958NetworkLowNone Requ...
102018-09-25CVE-2018-15957NetworkLowNone Requ...
52018-05-19CVE-2018-4942NetworkLowNone Requ...
4.32018-05-19CVE-2018-4941NetworkMediumNone Requ...
4.32018-05-19CVE-2018-4940NetworkMediumNone Requ...
102018-05-19CVE-2018-4939NetworkLowNone Requ...
4.62018-05-19CVE-2018-4938LocalLowNone Requ...
52017-12-01CVE-2017-11286NetworkLowNone Requ...
4.32017-12-01CVE-2017-11285NetworkMediumNone Requ...
7.52017-12-01CVE-2017-11284NetworkLowNone Requ...
7.52017-12-01CVE-2017-11283NetworkLowNone Requ...

CWE : Common Weakness Enumeration

%idName
35% (10)CWE-502Deserialization of Untrusted Data
25% (7)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
10% (3)CWE-434Unrestricted Upload of File with Dangerous Type
7% (2)CWE-611Information Leak Through XML External Entity File Disclosure
7% (2)CWE-200Information Exposure
Hide | Show 3 More...
%idName
7% (2)CWE-20Improper Input Validation
3% (1)CWE-427Uncontrolled Search Path Element
3% (1)CWE-77Improper Sanitization of Special Elements used in a Command ('Comma...

Snort® IPS/IDS

DateDescription
2019-04-11Adobe ColdFusion unauthorized serialized object attempt
RuleID : 49399 - Type : SERVER-WEBAPP - Revision : 3
2019-04-09Adobe ColdFusion arbitrary file upload attempt
RuleID : 49338 - Type : SERVER-OTHER - Revision : 1
2019-04-09Adobe ColdFusion arbitrary file upload attempt
RuleID : 49337 - Type : SERVER-OTHER - Revision : 1
2018-12-11Adobe ColdFusion unauthenticated file upload attempt
RuleID : 48359 - Type : SERVER-OTHER - Revision : 2
2018-07-12Java ysoserial payload deserialization exploit attempt
RuleID : 46937 - Type : INDICATOR-COMPROMISE - Revision : 1

Nessus® Vulnerability Scanner

idDescription
2018-09-13Name : A web-based application running on the remote host is affected by multiple vu...
File : coldfusion_win_apsb18-33.nasl - Type : ACT_GATHER_INFO
2018-04-12Name : A web-based application running on the remote host is affected by multiple vu...
File : coldfusion_win_apsb18-14.nasl - Type : ACT_GATHER_INFO
2017-09-13Name : A web-based application running on the remote host is affected by multiple vu...
File : coldfusion_win_apsb17-30.nasl - Type : ACT_GATHER_INFO
2017-04-28Name : A web-based application running on the remote host is affected by a remote co...
File : coldfusion_amf_deserialization.nasl - Type : ACT_ATTACK
2017-04-25Name : A web-based application running on the remote host is affected by multiple vu...
File : coldfusion_win_apsb17-14.nasl - Type : ACT_GATHER_INFO
Hide | Show 3 More...
idDescription
2016-06-18Name : A web-based application running on the remote host is affected by a reflected...
File : coldfusion_win_apsb16-22.nasl - Type : ACT_GATHER_INFO
2016-05-12Name : A web-based application running on the remote Windows host is affected by mul...
File : coldfusion_win_apsb16-16.nasl - Type : ACT_GATHER_INFO
2014-12-10Name : A web-based application running on the remote Windows host is affected by a d...
File : coldfusion_win_apsb14-29.nasl - Type : ACT_GATHER_INFO