RULE(RULE ID:323808)

Rule General Information
Release Date: 2024-04-28
Rule Name: Adobe ColdFusion CKEditor Unrestricted File Upload Vulnerability (CVE-2018-15961)
Severity:
CVE ID:
Rule Protection Details
Description: Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unrestricted file upload vulnerability. Successful exploitation could lead to arbitrary code execution.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Others
Reference: SecurityFocusBID:105314
AdobeSecurityBulletins:apsb18-33
SecurityTrackerID:1041621
ExploitDB:45979
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://helpx.adobe.com/security/products/coldfusion/apsb18-33.html