CVE-2019-7107

Description

Adobe InDesign versions 14.0.1 and below have an unsafe hyperlink processing vulnerability. Successful exploitation could lead to arbitrary code execution. Fixed in versions 13.1.1 and 14.0.2.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
6.387

Associated Vulnerability

VulnerabilityOS Platform
Update Adobe InDesign to version 14.0.2Windows
Update Adobe InDesign (x64) to version 14.0.2Windows
Multiple Vulnerabilities are affected in Adobe InDesign 13.1.0Windows
Multiple Vulnerabilities are affected in Adobe InDesign 14.0.1Windows
Vulnerabilities CVE-2019-7107 are fixed in Adobe InDesign for Mac 13.1.1Mac
Vulnerabilities CVE-2019-7107 are fixed in Adobe InDesign for Mac 14.0.2Mac

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234