Описание
Bridge is affected by an Untrusted Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 15.1.5 (исключая)Версия от 16.0 (включая) до 16.0.3 (исключая)
Одновременно
Одно из
cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:*
Одно из
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
EPSS
Процентиль: 7%
0.0017
Низкий
7.8 High
CVSS3
Дефекты
CWE-822
Связанные уязвимости
CVSS3: 7.8
github
17 дней назад
Bridge is affected by an Untrusted Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS3: 7.8
fstec
18 дней назад
Уязвимость файлового менеджера Adobe Bridge, связанная с записью за границами буфера в памяти, позволяющая нарушителю выполнить произвольный код
EPSS
Процентиль: 7%
0.0017
Низкий
7.8 High
CVSS3
Дефекты
CWE-822