← Back

CVE-2021-28570

nvd nist
Published: Jun 28, 2021Modified: Nov 21, 2024

JSON object

Loading...
8.6
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 6.0
Source: NVD

Description

Adobe After Effects version 18.1 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An unauthenticated attacker could exploit this to to plant custom binaries and execute them with System permissions. Exploitation of this issue requires user interaction.

Affected (1)

Products: Adobe: After Effects
1 product
After Effects
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 18.1
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (2)

Source: psirt@adobe.com
Not ApplicableVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Not ApplicableVendor Advisory

Timeline

No history available yet.