Adobe Creative Cloud Desktop Application (installer) version 2.4 (and earlier) is affected by an Uncontrolled Search Path Element vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/creative-cloud/apsb21-41.html | Vendor Advisory |
Configurations
History
31 Aug 2021, 15:51
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 9.3
v3 : 7.8 |
References | (MISC) https://helpx.adobe.com/security/products/creative-cloud/apsb21-41.html - Vendor Advisory | |
CPE | cpe:2.3:a:adobe:creative_cloud_desktop_application:*:*:*:*:*:*:*:* |
24 Aug 2021, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-08-24 19:15
Updated : 2024-02-04 21:47
NVD link : CVE-2021-28594
Mitre link : CVE-2021-28594
CVE.ORG link : CVE-2021-28594
JSON object : View
Products Affected
adobe
- creative_cloud_desktop_application
CWE
CWE-427
Uncontrolled Search Path Element