Adobe ColdFusion °²È«·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-09-26

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-8072 £¬Î£ÏÕ¼¶±ð£º¸ßΣ £¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-8073 £¬Î£ÏÕ¼¶±ð£ºÑϳÁ £¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºCVE-2019-8074 £¬Î£ÏÕ¼¶±ð£ºÑϳÁ £¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


Product

Affected Versions

Platform

ColdFusion 2018

Update 4 and earlier versions

All

ColdFusion 2016

Update 11 and earlier versions

All


·ì϶¸ÅÊö


Adobe ColdFusionÊÇÃÀ¹ú°Â¶à±È£¨Adobe£©¹«Ë¾µÄÒ»Ì×¼±¾çÀûÓ÷¨Ê½¿ª·¢Æ½Ì¨¡£¸Ãƽ̨Ô̺¬¼¯³É¿ª·¢»·¾³ºÍ¾ç±¾Ëµ»°¡£ Adobe ColdFusion 2018 Update 4¼°Ö®Ç°°æ±¾ºÍColdFusion 2016 Update 11¼°Ö®Ç°°æ±¾ÖдæÔÚ°²È«·ì϶¡£


Á½¸öÑϳÁ·ì϶ÊǺÅÁî×¢Èë·ì϶ £¬Ô̺¬¿Éµ¼ÖÂËÁÒâ´úÂëÖ´Ðеķì϶£¨CVE-2019-8073£©ºÍÔÊÐí¹¥»÷ÕßÈÆ¹ý½Ó¼û½ÚÔìµÄõè¾¶±éÀú·ì϶£¨CVE-2019-8074£©¡£Ò»¸ö¸ßΣ·ì϶ÊÇÈÆ¹ý·ì϶£¨CVE-2019-8072£© £¬¸Ã·ì϶¿Éµ¼ÖÂÐÅϢй¶¡£


·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶ £¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://helpx.adobe.com/security/products/coldfusion/apsb19-47.html¡£ 


²Î¿¼Á´½Ó


https://www.bleepingcomputer.com/news/security/adobe-fixes-critical-security-vulnerabilities-in-coldfusion/