Adobe ColdFusion Çå¾²Îó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-09-26

Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-8072£¬ £¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬ £¬£¬£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-8073£¬ £¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬ £¬£¬£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºCVE-2019-8074£¬ £¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬ £¬£¬£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


Product

Affected Versions

Platform

ColdFusion 2018

Update 4 and earlier versions

All

ColdFusion 2016

Update 11 and earlier versions

All


Îó²î¸ÅÊö


Adobe ColdFusionÊÇÃÀ¹ú°Â¶à±È£¨Adobe£©¹«Ë¾µÄÒ»Ì׿ìËÙÓ¦ÓóÌÐò¿ª·¢Æ½Ì¨¡£¡£ ¡£¡£¡£¡£¡£¸Ãƽ̨°üÀ¨¼¯³É¿ª·¢ÇéÐκ;籾ÓïÑÔ¡£¡£ ¡£¡£¡£¡£¡£ Adobe ColdFusion 2018 Update 4¼°Ö®Ç°°æ±¾ºÍColdFusion 2016 Update 11¼°Ö®Ç°°æ±¾Öб£´æÇå¾²Îó²î¡£¡£ ¡£¡£¡£¡£¡£


Á½¸öÑÏÖØÎó²îÊÇÏÂÁî×¢ÈëÎó²î£¬ £¬£¬£¬£¬£¬°üÀ¨¿Éµ¼ÖÂí§Òâ´úÂëÖ´ÐеÄÎó²î£¨CVE-2019-8073£©ºÍÔÊÐí¹¥»÷ÕßÈÆ¹ý»á¼û¿ØÖƵÄ·¾¶±éÀúÎó²î£¨CVE-2019-8074£©¡£¡£ ¡£¡£¡£¡£¡£Ò»¸ö¸ßΣÎó²îÊÇÈÆ¹ýÎó²î£¨CVE-2019-8072£©£¬ £¬£¬£¬£¬£¬¸ÃÎó²î¿Éµ¼ÖÂÐÅϢй¶¡£¡£ ¡£¡£¡£¡£¡£


Îó²îÑéÖ¤


ÔÝÎÞPOC/EXP¡£¡£ ¡£¡£¡£¡£¡£


ÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬ £¬£¬£¬£¬£¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://helpx.adobe.com/security/products/coldfusion/apsb19-47.html¡£¡£ ¡£¡£¡£¡£¡£ 


²Î¿¼Á´½Ó


https://www.bleepingcomputer.com/news/security/adobe-fixes-critical-security-vulnerabilities-in-coldfusion/