Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by a privilege escalation vulnerability in the Digital Editions installer. An authenticated attacker could leverage this vulnerability to escalate privileges. User interaction is required before product installation to abuse this vulnerability.
References
| Link | Resource |
|---|---|
| https://helpx.adobe.com/security/products/Digital-Editions/apsb21-80.html | Patch Vendor Advisory |
| https://helpx.adobe.com/security/products/Digital-Editions/apsb21-80.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
21 Nov 2024, 06:20
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : 6.8
v3 : 5.8 |
| References | () https://helpx.adobe.com/security/products/Digital-Editions/apsb21-80.html - Patch, Vendor Advisory |
01 Oct 2021, 12:39
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:adobe:digital_editions:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* |
|
| References | (MISC) https://helpx.adobe.com/security/products/Digital-Editions/apsb21-80.html - Patch, Vendor Advisory | |
| CVSS |
v2 : v3 : |
v2 : 6.8
v3 : 6.5 |
27 Sep 2021, 17:01
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2021-09-27 16:15
Updated : 2024-11-21 06:20
NVD link : CVE-2021-39828
Mitre link : CVE-2021-39828
CVE.ORG link : CVE-2021-39828
JSON object : View
Products Affected
adobe
- digital_editions
apple
- macos
CWE
CWE-379
Creation of Temporary File in Directory with Insecure Permissions
