Skip to main content
May 14, 2013
Question

Does vulnerability CVE-2013-3336 apply to CF8.0?

  • May 14, 2013
  • 1 reply
  • 685 views

The release note was confused.

Adobe has identified a critical vulnerability affecting ColdFusion 10, 9.0.2, 9.0.1, 9.0, and earlier versions for Windows, Macintosh, and UNIX. This vulnerability (CVE-2013-3336) could permit an unauthorized user to remotely retrieve files stored on a server.

This topic has been closed for replies.

1 reply

BKBK
Community Expert
Community Expert
May 17, 2013

I think ColdFusion 8 is ignored simply because it is no longer current, and is in fact heading for end-of-life. See Adobe's end-of-life matrix.