CVE-2020-9667
6.5
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Exploitability: 0.6 / Impact: 5.9
Source: NVD
Description
Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An authenticated attacker with admin privileges could plant custom binaries and execute them with System permissions. Exploitation of this issue requires user interaction.
Affected (1)
Products: Adobe: Genuine Service
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 6.6 |
| Running on/with | Platform Versions |
|---|---|
Apple Macos | All versions |
Microsoft Windows | All versions |
References (2)
Source: psirt@adobe.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.