CVE-2020-9668

Adobe Genuine Service version 6.6 (and earlier) is affected by an Improper Access control vulnerability when handling symbolic links. An unauthenticated attacker could exploit this to elevate privileges in the context of the current user.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:adobe:genuine_service:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

26 Jul 2022, 10:05

Type Values Removed Values Added
CWE CWE-284 NVD-CWE-Other

08 Sep 2021, 17:23

Type Values Removed Values Added
CPE cpe:2.3:o:apple:mac_os:-:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*

Information

Published : 2021-04-16 18:15

Updated : 2024-02-04 21:47


NVD link : CVE-2020-9668

Mitre link : CVE-2020-9668

CVE.ORG link : CVE-2020-9668


JSON object : View

Products Affected

apple

  • macos

adobe

  • genuine_service

microsoft

  • windows
CWE
NVD-CWE-Other CWE-284

Improper Access Control