Vulnerabilities > Adobe > Creative Cloud

DATE CVE VULNERABILITY TITLE RISK
2023-03-22 CVE-2023-26358 Untrusted Search Path vulnerability in Adobe Creative Cloud
Creative Cloud version 5.9.1 (and earlier) is affected by an Untrusted Search Path vulnerability that might allow attackers to execute their own programs, access unauthorized data files, or modify configuration in unexpected ways.
local
low complexity
adobe CWE-426
7.8
2020-10-21 CVE-2020-24422 Uncontrolled Search Path Element vulnerability in Adobe Creative Cloud 2.1/5.2
Adobe Creative Cloud Desktop Application version 5.2 (and earlier) and 2.1 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-427
7.8
2020-07-17 CVE-2020-9669 Improper Privilege Management vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a lack of exploit mitigations vulnerability.
network
low complexity
adobe CWE-269
critical
9.8
2020-03-25 CVE-2020-3808 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application versions 5.0 and earlier have a time-of-check to time-of-use (toctou) race condition vulnerability.
network
high complexity
adobe CWE-367
5.9
2019-10-23 CVE-2019-8236 Unspecified vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application version 4.6.1 and earlier versions have Security Bypass vulnerability.
network
low complexity
adobe
critical
9.8
2019-08-16 CVE-2019-8063 Unspecified vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application 4.6.1 and earlier versions have an insecure transmission of sensitive data vulnerability.
network
low complexity
adobe
7.5
2019-08-16 CVE-2019-7959 Improper Input Validation vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnerability.
network
low complexity
adobe CWE-20
critical
9.8
2019-08-16 CVE-2019-7958 Incorrect Permission Assignment for Critical Resource vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application versions 4.6.1 and earlier have an insecure inherited permissions vulnerability.
network
low complexity
adobe CWE-732
critical
9.8
2019-08-16 CVE-2019-7957 Unspecified vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application versions 4.6.1 and earlier have a security bypass vulnerability.
network
low complexity
adobe
7.5
2019-05-24 CVE-2019-7093 Uncontrolled Search Path Element vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application (installer) versions 4.7.0.400 and earlier have an insecure library loading (dll hijacking) vulnerability.
local
low complexity
adobe CWE-427
7.8