CVE-2021-39827

Description

Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary file write vulnerability in the Digital Editions installer. An authenticated attacker could leverage this vulnerability to write an arbitrary file to the system. User interaction is required before product installation to abuse this vulnerability.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.838

Associated Vulnerability

VulnerabilityOS Platform
Vulnerability CVE-2021-39826,CVE-2021-39827,CVE-2021-39828 are affected in Adobe Digital Editions 4.5.11.187303Windows
Multiple Vulnerabilities are fixed in Adobe Digital Editions 4.5.11.187658Windows
Vulnerabilities CVE-2021-39828,CVE-2021-39827,CVE-2021-39826,CVE-2023-21582 are fixed in Adobe Digital Editions 4.5.11.187658Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234