CVE-2010-2861
CRITICAL KEV RANSOMWARE NUCLEIAdobe ColdFusion <9.0.1 - Path Traversal
Title source: llmDescription
Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2) logging/settings.cfm, (3) datasources/index.cfm, (4) j2eepackaging/editarchive.cfm, and (5) enter.cfm in CFIDE/administrator/.
Exploits (4)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotemultiple
https://www.exploit-db.com/exploits/16985
exploitdb
WORKING POC
VERIFIED
by anonymous · pythonremotemultiple
https://www.exploit-db.com/exploits/14641
metasploit
WORKING POC
by CG, nebulus · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/coldfusion_locale_traversal.rb
Nuclei Templates (1)
Adobe ColdFusion 8.0/8.0.1/9.0/9.0.1 LFI
HIGHby pikpikcu
Shodan:
http.component:"Adobe ColdFusion" || http.component:"adobe coldfusion" || http.title:"coldfusion administrator login" || cpe:"cpe:2.3:a:adobe:coldfusion"
FOFA:
title="coldfusion administrator login" || app="adobe-coldfusion"
References (6)
Scores
CVSS v3
9.8
EPSS
0.9426
EPSS Percentile
99.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CISA KEV
2022-03-25
VulnCheck KEV
2021-09-21
InTheWild.io
2022-03-25
ENISA EUVD
EUVD-2010-2865
Ransomware Use
Confirmed
CWE
CWE-22
Status
published
Products (1)
adobe/coldfusion
< 9.0.1
Published
Aug 11, 2010
KEV Added
Mar 25, 2022
Tracked Since
Feb 18, 2026