7.8

CVSS3.1

CVE-2024-49543 - InDesign Desktop | Stack-based Buffer Overflow (CWE-121)

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

๐Ÿ“… Published: Dec. 10, 2024, 8:51 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2024, 9:22 p.m.

6.1

CVSS3.1

CVE-2024-54048 - Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an unauthenticated attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victโ€ฆ

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Jan. 15, 2025, 5:54 p.m.

6.1

CVSS3.1

CVE-2024-54050 - Adobe Connect | URL Redirection to Untrusted Site ('Open Redirect') (CWE-601)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue requires user interaction.

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Jan. 15, 2025, 5:54 p.m.

6.1

CVSS3.1

CVE-2024-54045 - Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an unauthenticated attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victโ€ฆ

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Jan. 15, 2025, 8:15 p.m.

8.1

CVSS3.1

CVE-2024-54037 - Adobe Connect | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to execute arbitrary code in the context of the victim's browser session. By manipulating a DOM element through a crafted URL or user input, thโ€ฆ

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Jan. 21, 2025, 5:07 p.m.

6.1

CVSS3.1

CVE-2024-54043 - Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an unauthenticated attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victโ€ฆ

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Jan. 15, 2025, 5:55 p.m.

5.4

CVSS3.1

CVE-2024-54040 - Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victimโ€™s browser when they browse to the page contโ€ฆ

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2024, 2:40 p.m.

6.1

CVSS3.1

CVE-2024-54049 - Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2024, 2:42 p.m.

9.3

CVSS3.1

CVE-2024-54036 - Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victimโ€™s browser when they browse to the page contโ€ฆ

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Jan. 15, 2025, 5:54 p.m.

5.4

CVSS3.1

CVE-2024-54041 - Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79)

Adobe Connect versions 12.6, 11.4.7 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victimโ€™s browser when they browse to the page contโ€ฆ

๐Ÿ“… Published: Dec. 10, 2024, 8:42 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2024, 2:40 p.m.
Total resulsts: 346621
Page 7283 of 34,663
ยซ previous page ยป next page
Filters