CVE-2010-2861

CRITICAL KEV RANSOMWARE NUCLEI

Adobe ColdFusion <9.0.1 - Path Traversal

Title source: llm

Description

Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2) logging/settings.cfm, (3) datasources/index.cfm, (4) j2eepackaging/editarchive.cfm, and (5) enter.cfm in CFIDE/administrator/.

Exploits (4)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotemultiple
https://www.exploit-db.com/exploits/16985
exploitdb WORKING POC VERIFIED
by anonymous · pythonremotemultiple
https://www.exploit-db.com/exploits/14641
nomisec WORKING POC
by greysneakthief · infoleak
https://github.com/greysneakthief/14641-v2
metasploit WORKING POC
by CG, nebulus · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/coldfusion_locale_traversal.rb

Nuclei Templates (1)

Adobe ColdFusion 8.0/8.0.1/9.0/9.0.1 LFI
HIGHby pikpikcu
Shodan: http.component:"Adobe ColdFusion" || http.component:"adobe coldfusion" || http.title:"coldfusion administrator login" || cpe:"cpe:2.3:a:adobe:coldfusion"
FOFA: title="coldfusion administrator login" || app="adobe-coldfusion"

Scores

CVSS v3 9.8
EPSS 0.9426
EPSS Percentile 99.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2022-03-25
VulnCheck KEV 2021-09-21
InTheWild.io 2022-03-25
ENISA EUVD EUVD-2010-2865
Ransomware Use Confirmed
CWE
CWE-22
Status published
Products (1)
adobe/coldfusion < 9.0.1
Published Aug 11, 2010
KEV Added Mar 25, 2022
Tracked Since Feb 18, 2026