Adobe ColdFusion 2016 update 15 and earlier versions, and ColdFusion 2018 update 9 and earlier versions have a dll search-order hijacking vulnerability. Successful exploitation could lead to privilege escalation.
Metrics
Affected Vendors & Products
References
History
Mon, 05 May 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: adobe
Published: 2020-07-17T00:00:52.000Z
Updated: 2025-05-05T17:04:51.353Z
Reserved: 2020-03-02T00:00:00.000Z
Link: CVE-2020-9672
Updated: 2024-08-04T10:34:39.917Z
Status : Modified
Published: 2020-07-17T00:15:11.917
Modified: 2025-05-05T17:16:04.560
Link: CVE-2020-9672
No data.