← voltar
CVE-2021-39820highCWE-787

Adobe InDesign Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution

21Vexday Risk Score

Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.

ssvc Trackcvss 7.8epss 3.5%
probabilidade de exploração
3.5%top 12% das CVEs
exploração observada
nãonenhuma fonte reporta
Adobe InDesign versions 16.3 (and earlier), and 16.3.1 (and earlier) is affected by an Out-of-bounds Write vulnerability due to insecure handling of a malicious TIFF file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Produtos afetados
Adobe · InDesign