Description

InDesign Desktop versions 19.4, 18.5.3 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution. An attacker could exploit this vulnerability by uploading a malicious file which, when executed, could run arbitrary code in the context of the server. Exploitation of this issue requires user interaction.

INFO

Published Date :

2024-10-09T14:18:39.512Z

Last Modified :

2024-10-09T16:04:13.405Z

Source :

adobe
AFFECTED PRODUCTS

The following products are affected by CVE-2024-45137 vulnerability.

Vendors Products
Adobe
  • Indesign
Apple
  • Macos
Microsoft
  • Windows
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-45137.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact