Junglewise Threat Intelligence

CVE-2013-0631: Adobe ColdFusion Information Disclosure Vulnerability

CVE-2013-0631 · Severity: critical · CVSS 7.5 · Exploited in the wild · Published 2022-03-07

Technologies: Adobe ColdFusion. Vendors: Adobe.

Executive brief

Adobe ColdFusion versions 9.0, 9.0.1, and 9.0.2 contain an unspecified vulnerability that allows remote attackers to obtain sensitive information. This vulnerability was exploited in the wild starting in January 2013.

Affected products

  • Adobe ColdFusion 9.0, 9.0.1, 9.0.2

Timeline

  • 2013-01-08: disclosed: NVD Published Date
  • 2013-01-01: exploited: Exploited in the wild in January 2013
  • 2022-03-07: kev added: Added to CISA Known Exploited Vulnerabilities Catalog

Related threats