Vulnerabilities > Adobe > Creative Cloud Desktop Application > 2.5

DATE CVE VULNERABILITY TITLE RISK
2022-02-16 CVE-2022-23202 Uncontrolled Search Path Element vulnerability in Adobe Creative Cloud Desktop Application 2.4/2.5/2.7.0.13
Adobe Creative Cloud Desktop version 2.7.0.13 (and earlier) is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user.
network
high complexity
adobe CWE-427
5.1
2021-11-18 CVE-2021-43017 Creation of Temporary File in Directory with Incorrect Permissions vulnerability in Adobe Creative Cloud Desktop Application
Adobe Creative Cloud version 5.5 (and earlier) are affected by an Application denial of service vulnerability in the Creative Cloud Desktop installer.
network
adobe CWE-379
3.5
2021-09-27 CVE-2021-28613 Creation of Temporary File in Directory with Incorrect Permissions vulnerability in Adobe Creative Cloud Desktop Application
Adobe Creative Cloud Desktop Application version 5.4 (and earlier) is affected by a file handling vulnerability that could allow an attacker to arbitrarily overwrite a file.
local
adobe CWE-379
3.3
2021-03-12 CVE-2021-21078 Untrusted Search Path vulnerability in Adobe Creative Cloud Desktop Application
Adobe Creative Cloud Desktop Application version 5.3 (and earlier) is affected by an Unquoted Service Path vulnerability in CCXProcess that could allow an attacker to achieve arbitrary code execution in the process of the current user.
local
low complexity
adobe CWE-426
6.5
2021-03-12 CVE-2021-21068 Creation of Temporary File in Directory with Incorrect Permissions vulnerability in Adobe Creative Cloud Desktop Application
Adobe Creative Cloud Desktop Application version 5.3 (and earlier) is affected by a file handling vulnerability that could allow an attacker to cause arbitrary file overwriting.
low complexity
adobe CWE-379
6.1
2020-07-17 CVE-2020-9682 Link Following vulnerability in Adobe Creative Cloud Desktop Application 2.4/2.5/5.1
Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a symlink vulnerability vulnerability.
network
low complexity
adobe CWE-59
critical
10.0
2020-07-17 CVE-2020-9671 Incorrect Permission Assignment for Critical Resource vulnerability in Adobe Creative Cloud Desktop Application 2.4/2.5/5.1
Adobe Creative Cloud Desktop Application versions 5.1 and earlier have an insecure file permissions vulnerability.
network
low complexity
adobe CWE-732
7.5