Описание
Bridge is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 15.1.5 (исключая)Версия от 16.0 (включая) до 16.0.3 (исключая)
Одновременно
Одно из
cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:*
Одно из
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
EPSS
Процентиль: 7%
0.0017
Низкий
7.8 High
CVSS3
Дефекты
CWE-190
Связанные уязвимости
CVSS3: 7.8
github
17 дней назад
Bridge is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS3: 7.8
fstec
18 дней назад
Уязвимость файлового менеджера Adobe Bridge, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код
EPSS
Процентиль: 7%
0.0017
Низкий
7.8 High
CVSS3
Дефекты
CWE-190