قاعدة الثغرات (CVE)
CVE-2026-48282
اجتياز مسار يتيح تنفيذ شفرة في Adobe ColdFusion
حرجةمُستغلة فعليًاKEVالتصحيح متوفر: غير متوفر بعد
ثغرة Path Traversal في ColdFusion تقود إلى تنفيذ شفرة عشوائية في سياق المستخدم الحالي. ColdFusion هدف متكرر لمجموعات الفدية والتجسس.
ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.
المنتجات المتأثرة
| Product | الإصدارات المتأثرة | تم الإصلاح في |
|---|---|---|
| ColdFusion | — | — |
التغطية على سيبرانا
—