CVE-2025-61808Disclosure(adobe / coldfusion)

LOWCVSS 9.1 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could lead to arbitrary code execution by a high priviledged attacker. Exploitation of this issue does not require user interaction and scope is changed.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-434

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • coldfusion

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
coldfusion

3 versions affected across 1 product

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-07: 1Technical Details · 2026-02-07: 102-07
Signal classification1 categories
Disclosure
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • SystemTek - Technology news website@SystemTek_UK
    Disclosure

    Adobe ColdFusion CAR File Parsing Directory Traversal Remote Code Execution Vulnerability (CVE-2025-61808) #Adobe #AdobeColdFusion #CVE202561808 #CyberSecurity #RemoteCodeExecutionVulnerability https://www.systemtek.co.uk/?p=48263 https://t.co/DTx7TIRepo

    Post summary

    Adobe ColdFusion CVE-2025-61808 is disclosed as a directory traversal that allows remote code execution; the tweet references an article but does not provide PoC, exploit code, or evidence of active exploitation.

    0000076
    1.8K followersView on X
CPE platform detail45 entries

45 of 45 entries

PartVendorProductVersionTarget SWTarget HW
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2021--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2023--
Appadobecoldfusion2025--
Appadobecoldfusion2025--
Appadobecoldfusion2025--
Appadobecoldfusion2025--
Appadobecoldfusion2025--

Explore more