Sploitus

CVE-2013-0625

5 known exploits for CVE-2013-0625

Adobe ColdFusion 9.0, 9.0.1, and 9.0.2, when a password is not configured, allows remote attackers to bypass authentication and possibly execute arbitrary code via unspecified vectors, as exploited in the wild in January 2013.

Affected products
Coldfusion
Adobe Coldfusion
= 9.0, 9.0.1, 9.0.2
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
93.8% (100th percentile)
Weakness
CWE-287
NVD status
Analyzed
Published
2013-01-09
CVE-2013-0625 at NVD
Authoritative description, scoring and affected products

5 known exploits for CVE-2013-0625

Proof-of-concept code and exploit modules indexed by Sploitus