VYPR
Critical severity9.8NVD Advisory· Published Sep 25, 2018· Updated Jun 17, 2026

CVE-2018-15959

CVE-2018-15959

Description

Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.

Affected products

2
  • Adobe Inc./Coldfusionllm-fuzzy2 versions
    2018.0.0.310739, Update 6 and earlier, Update 14 and earlier+ 1 more
    • (no CPE)range: 2018.0.0.310739, Update 6 and earlier, Update 14 and earlier
    • (no CPE)range: July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier versions

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.