#VU78460 Improper access control in ColdFusion - CVE-2023-38205
Published: July 20, 2023
ColdFusion
Adobe
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions. A remote non-authenticated attacker can bypass implemented security restrictions and gain unauthorized access to the application.
Note, the vulnerability is being actively exploited in the wild.