Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 08 Sep 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ColdFusion is affected by an Improper Access Control vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue does not require user interaction. | |
| Title | ColdFusion | Improper Access Control (CWE-284) | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2026-09-08T19:37:47.584Z
Reserved: 2026-08-18T18:44:22.496Z
Link: CVE-2026-75998
No data.
Status : Awaiting Analysis
Published: 2026-09-08T20:18:23.637
Modified: 2026-09-08T21:13:32.293
Link: CVE-2026-75998
No data.
OpenCVE Enrichment
No data.
-
CWE-284
Improper Access Control