CVE-2021-21078

Description

Adobe Creative Cloud Desktop Application version 5.3 (and earlier) is affected by an Unquoted Service Path vulnerability in CCXProcess that could allow an attacker to achieve arbitrary code execution in the process of the current user. Exploitation of this issue requires user interaction

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.153

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2021-21068,CVE-2021-21069,CVE-2021-21078,CVE-2021-28547 are affected in Adobe Creative Cloud (x64) 2.5Windows
Vulnerabilities CVE-2021-21068,CVE-2021-21069,CVE-2021-21078,CVE-2021-28547 are affected in Adobe Creative Cloud 2.5Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234