Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unrestricted file upload vulnerability. Successful exploitation could lead to arbitrary code execution.
Published: 2018-09-25
CVSS: 10.0
CVSS Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C
Download CVE-2018-15961 POC (Proof-of-Concept) here:
Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.