CVE-2021-39826

Description

Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary command execution vulnerability. An authenticated attacker could leverage this vulnerability to execute arbitrary commands. User interaction is required to abuse this vulnerability in that a user must open a maliciously crafted .epub file.

Risk Information

Base Score
8.6
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
EPSS Score
Exploitation Probability
2.865

Associated Vulnerability

VulnerabilityOS Platform
Vulnerability CVE-2021-39826,CVE-2021-39827,CVE-2021-39828 are affected in Adobe Digital Editions 4.5.11.187303Windows
Multiple Vulnerabilities are fixed in Adobe Digital Editions 4.5.11.187658Windows
Vulnerabilities CVE-2021-39828,CVE-2021-39827,CVE-2021-39826,CVE-2023-21582 are fixed in Adobe Digital Editions 4.5.11.187658Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234