Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-94qm-cpmj-pvcv

Опубликовано: 16 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

Adobe Lightroom Classic 10.3 (and earlier) are affected by a privilege escalation vulnerability in the Offline Lightroom Classic installer. An authenticated attacker could leverage this vulnerability to escalate privileges. User interaction is required before product installation to abuse this vulnerability.

Adobe Lightroom Classic 10.3 (and earlier) are affected by a privilege escalation vulnerability in the Offline Lightroom Classic installer. An authenticated attacker could leverage this vulnerability to escalate privileges. User interaction is required before product installation to abuse this vulnerability.

EPSS

Процентиль: 49%
0.00255
Низкий

7 High

CVSS3

Дефекты

CWE-269
CWE-379

Связанные уязвимости

CVSS3: 6.1
nvd
больше 3 лет назад

Adobe Lightroom Classic 10.3 (and earlier) are affected by a privilege escalation vulnerability in the Offline Lightroom Classic installer. An authenticated attacker could leverage this vulnerability to escalate privileges. User interaction is required before product installation to abuse this vulnerability.

CVSS3: 8.8
fstec
больше 4 лет назад

Уязвимость графического редактора Adobe Lightroom Classic, связанная с созданием временных файлов с небезопасными разрешениями, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 49%
0.00255
Низкий

7 High

CVSS3

Дефекты

CWE-269
CWE-379