7.8

CVSS3.1

CVE-2024-39393 - Adobe Indesign 2024 PCT File Parsing Memory Corruption Remote Code Execution Vulnerability

InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the curโ€ฆ

๐Ÿ“… Published: Aug. 14, 2024, 3:05 p.m. ๐Ÿ”„ Last Modified: Aug. 19, 2024, 4:22 p.m.

7.8

CVSS3.1

CVE-2024-39389 - Adobe Indesign PDF File Parsing Stack Based Buffer Overflow Remote Code Execution Vulnerability

InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

๐Ÿ“… Published: Aug. 14, 2024, 3:05 p.m. ๐Ÿ”„ Last Modified: Aug. 19, 2024, 4:17 p.m.

5.5

CVSS3.1

CVE-2024-39395 - Adobe Indesign 2024 DOC File Parsing Null Pointer Dereference

InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS). An attacker could exploit this vulnerability to crash the application, resulting in a DoS condition. Exploitation of this issue โ€ฆ

๐Ÿ“… Published: Aug. 14, 2024, 3:05 p.m. ๐Ÿ”„ Last Modified: Aug. 19, 2024, 4:21 p.m.

7.8

CVSS3.1

CVE-2024-39394 - Adobe Indesign 2024 PDF File Parsing Out Of Bound Write Remote Code Execution Vulnerability

InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

๐Ÿ“… Published: Aug. 14, 2024, 3:05 p.m. ๐Ÿ”„ Last Modified: Aug. 19, 2024, 4:21 p.m.

6.5

CVSS3.1

CVE-2024-25157 - Authentication bypass in GoAnywhere MFT prior to 7.6.0

An authentication bypass vulnerability in GoAnywhere MFT prior to 7.6.0 allows Admin Users with access to the Agent Console to circumvent some permission checks when attempting to visit other pages. This could lead to unauthorized information disclosure or modification.

๐Ÿ“… Published: Aug. 14, 2024, 3:04 p.m. ๐Ÿ”„ Last Modified: Aug. 29, 2024, 3:55 a.m.

7.8

CVSS3.1

CVE-2024-39388 - ZDI-CAN-24055: Adobe Substance 3D Stager SKP File Parsing Use-After-Free Remote Code Execution Vulnโ€ฆ

Substance3D - Stager versions 3.0.2 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

๐Ÿ“… Published: Aug. 14, 2024, 3:03 p.m. ๐Ÿ”„ Last Modified: Nov. 16, 2024, 4:55 a.m.

5.5

CVSS3.1

CVE-2024-39387 - ZDI-CAN-24047: Adobe Bridge AVI FIle Parsing Out-Of-Bounds Read Information Disclosure Vulnerability

Bridge versions 13.0.8, 14.1.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim mโ€ฆ

๐Ÿ“… Published: Aug. 14, 2024, 3:02 p.m. ๐Ÿ”„ Last Modified: Aug. 19, 2024, 6:53 p.m.

7.8

CVSS3.1

CVE-2024-41840 - ZDI-CAN-24607: Adobe Bridge JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

Bridge versions 13.0.8, 14.1.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

๐Ÿ“… Published: Aug. 14, 2024, 3:02 p.m. ๐Ÿ”„ Last Modified: Aug. 19, 2024, 6:54 p.m.

7.8

CVSS3.1

CVE-2024-39386 - ZDI-CAN-24057: Adobe Bridge AVI FIle Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

Bridge versions 13.0.8, 14.1.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

๐Ÿ“… Published: Aug. 14, 2024, 3:02 p.m. ๐Ÿ”„ Last Modified: Aug. 19, 2024, 6:53 p.m.

7.8

CVSS3.1

CVE-2024-34117 - Adobe Photoshop 2024 MPO File Parsing Use-After-Free vulnerability

Photoshop Desktop versions 24.7.3, 25.9.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

๐Ÿ“… Published: Aug. 14, 2024, 2:58 p.m. ๐Ÿ”„ Last Modified: Sept. 18, 2024, 2:41 p.m.
Total resulsts: 346622
Page 8596 of 34,663
ยซ previous page ยป next page
Filters