CVE-2020-3796: Adobe ColdFusion
Medium severity, CVSS 6.5. EPSS: 4.3% chance of exploitation in the next 30 days.
ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an improper access control vulnerability. Successful exploitation could lead to system file structure disclosure.
Affected products
- Adobe ColdFusion: version 2016 only; version 2018 only
Published 2020-06-26. Last modified 2026-06-17.