Adobe releases security updates addressing seven maximum-severity vulnerabilities affecting its ColdFusion web application development platform and Adobe Campaign Classic marketing automation platform. Multiple outlets report that the defects carry CVSS scores of 10.0 and are classified by Adobe as critical. Adobe states that the flaws could allow arbitrary code execution, privilege escalation, arbitrary file system read, and bypass of security features. The updates are intended to resolve both “critical” and “important” issues within the affected products. While the outlets differ in emphasis, they agree on the scope: the patches cover two Adobe products—ColdFusion and Campaign Classic—and the presence of several vulnerabilities rated at the highest severity level. Users and administrators are expected to apply the released patches to mitigate the reported risks, especially those tied to code execution and unauthorized access. The disclosures point to Adobe’s security advisory/alert as the basis for the described impact and severity ratings.
Adobe releases patches for seven critical ColdFusion and Campaign Classic vulnerabilities
Adobe releases security updates addressing seven maximum-severity vulnerabilities affecting its ColdFusion web application development platform and Adobe Campaign Classic marketing automation platform...
- Adobe releases patches for seven maximum-severity (10/10) vulnerabilities across ColdFusion and Campaign Classic.
- The affected products are Adobe ColdFusion and Adobe Campaign Classic.
- Adobe says the flaws could enable arbitrary code execution and privilege escalation.
- The reported impacts also include arbitrary file system read and bypassing security features.
- The updates are issued to address Adobe’s “critical” and “important” vulnerabilities in the affected platforms.
Adobe has released patches for multiple maximum-severity security flaws impacting Adobe ColdFusion and Adobe Campaign Classic. The ColdFusion updates "resolves critical and important vulnerabilities that could lead to arbitrary code execution, privilege escalation, arbitrary file system read, and security feature bypass," Adobe said in an alert released Tuesday. The vulnerabilities are listed
1 month agoSeven of the security defects have a maximum severity rating of 10/10 and could lead to arbitrary code execution. The post Adobe Patches Critical ColdFusion, Campaign Classic Vulnerabilities appeared first on SecurityWeek.
1 month agoAdobe has released security patches for seven maximum-severity vulnerabilities in the ColdFusion web app development platform and the Campaign Classic marketing automation platform. [...]
1 month ago
Colorado River drought triggers new proposed water cuts, raising uncertainty for communities
Communities in the US Southwest that rely on the Colorado River face new uncertainty as drought and depleted reservoir l...
Indian rescue team arrives in flood-hit Nepal to support Trishuli tunnel rescue
An Indian rescue team arrives in Nepal to support operations at the Trishuli hydropower project after flooding. The team...
Superquiz daily interactive trivia features across Australian news outlets
Across multiple Australian publications, “Superquiz” runs as a daily interactive trivia feature inviting readers to test...