Description
Due to a vulnerability in ColdFusion components(.cfc) metadata handling, an unauthenticated attacker can execute arbitrary code or read files on the server
Remediation
Upgrade to the latest version of Adobe ColdFusion
References
Related Vulnerabilities
WordPress Plugin Search Unleashed 'Log' Function HTML Injection (0.2.10)
Apache Traffic Server Uncontrolled Resource Consumption Vulnerability (CVE-2018-8005)
MySQL CVE-2021-2305 Vulnerability (CVE-2021-2305)
WordPress Ultimate Member Plugin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-10673)
IBM RTC Improper Restriction of XML External Entity Reference Vulnerability (CVE-2021-20502)