← Back

CVE-2021-21093

nvd nist
Published: Apr 15, 2021Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: psirt@adobe.com (Secondary)

Description

Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected (2)

Products: Adobe: Bridge
1 product
Bridge
Configuration A
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Adobe
From 10.0 to 10.1.1
From 11.0 to 11.0.1
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (4)

Source: psirt@adobe.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry

Timeline

No history available yet.