Vulnerabilities > CVE-2020-9747 - Double Free vulnerability in Adobe Animate 15.2.1.95/20.5

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
adobe
CWE-415
critical

Summary

Adobe Animate version 20.5 (and earlier) is affected by a double free vulnerability when parsing a crafted .fla file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.

Vulnerable Configurations

Part Description Count
Application
Adobe
2
OS
Microsoft
1

Common Weakness Enumeration (CWE)