Vulnerabilities > Adobe > After Effects > 18.1

DATE CVE VULNERABILITY TITLE RISK
2021-11-18 CVE-2021-40755 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe After Effects
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious SGI file in the DoReadContinue function, potentially resulting in arbitrary code execution in the context of the current user.
network
adobe CWE-119
critical
9.3
2021-11-18 CVE-2021-40756 NULL Pointer Dereference vulnerability in Adobe After Effects
Adobe After Effects version 18.4.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file.
network
adobe CWE-476
4.3
2021-11-18 CVE-2021-40757 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe After Effects
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious MXF file, potentially resulting in arbitrary code execution in the context of the current user.
network
adobe CWE-119
critical
9.3
2021-11-18 CVE-2021-40758 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe After Effects
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious WAV file, potentially resulting in arbitrary code execution in the context of the current user.
network
adobe CWE-119
critical
9.3
2021-11-18 CVE-2021-40759 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe After Effects
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious .m4a file, potentially resulting in arbitrary code execution in the context of the current user.
network
adobe CWE-119
critical
9.3
2021-11-18 CVE-2021-40760 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe After Effects
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious .m4a file, potentially resulting in arbitrary code execution in the context of the current user.
network
adobe CWE-119
critical
9.3
2021-11-18 CVE-2021-40761 NULL Pointer Dereference vulnerability in Adobe After Effects
Adobe After Effects version 18.4.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file.
network
adobe CWE-476
4.3
2021-09-08 CVE-2021-28571 OS Command Injection vulnerability in Adobe After Effects
Adobe After Effects version 18.1 (and earlier) is affected by a potential Command injection vulnerability when chained with a development and debugging tool for JavaScript scripts.
network
high complexity
adobe CWE-78
7.6
2021-09-02 CVE-2021-35993 Out-of-bounds Write vulnerability in Adobe After Effects
Adobe After Effects version 18.2.1 (and earlier) is affected by an out-of-bounds Write vulnerability when parsing a specially crafted file.
network
adobe CWE-787
6.8
2021-09-02 CVE-2021-35994 Out-of-bounds Write vulnerability in Adobe After Effects
Adobe After Effects version 18.2.1 (and earlier) is affected by an out-of-bounds Write vulnerability when parsing a specially crafted file.
network
adobe CWE-787
critical
9.3