AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2010-5290

HIGH · CVSS 10 EPSS 5.53%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2013-09-20 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2010-5290
Severity
HIGH
CVSS
10
EPSS
5.53%

Original Filing — NVD Description

The authentication process in Adobe ColdFusion before 10 does not require knowledge of the cleartext password if the password hash is known, which makes it easier for context-dependent attackers to obtain administrative privileges by leveraging read access to the configuration file, a different vulnerability than CVE-2010-2861.