Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-48397

Опубликовано: 11 авг. 2026
Источник: nvd
CVSS3: 8.6
EPSS Низкий

Описание

Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:adobe:lightroom:*:*:*:*:classic:*:*:*
Версия до 15.5 (исключая)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

EPSS

Процентиль: 44%
0.00547
Низкий

8.6 High

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 8.6
github
около 1 месяца назад

Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVSS3: 8.6
fstec
около 1 месяца назад

Уязвимость графического редактора Adobe Lightroom Classic, связанная с недостатками механизма десериализации, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 44%
0.00547
Низкий

8.6 High

CVSS3

Дефекты

CWE-502