CyberSec.Space Logo
Back to CVE Browser

CVE-2010-2861

Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
EPSS Score70.6520%
EPSS Percentile85.67th
PublishedAug 11, 2010
Last ModifiedApr 21, 2026

Vulnerability Description

Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2) logging/settings.cfm, (3) datasources/index.cfm, (4) j2eepackaging/editarchive.cfm, and (5) enter.cfm in CFIDE/administrator/.

Affected Platforms (CPE)

πŸ“¦
Adobe

Coldfusion

<= 9.0.1

References & Advisories

Related Vulnerabilities