Vulnerabilities > Adobe > Creative Cloud > 1.3.0.322

DATE CVE VULNERABILITY TITLE RISK
2018-08-29 CVE-2018-12829 Improper Certificate Validation vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application before 4.6.1 has an improper certificate validation vulnerability.
network
low complexity
adobe CWE-295
7.5
2018-05-19 CVE-2018-4992 Improper Input Validation vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper input validation vulnerability.
local
low complexity
adobe CWE-20
4.6
2018-05-19 CVE-2018-4991 Improper Certificate Validation vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper certificate validation vulnerability.
network
low complexity
adobe CWE-295
7.5
2018-05-19 CVE-2018-4873 Unquoted Search Path or Element vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Unquoted Search Path vulnerability.
local
low complexity
adobe CWE-428
4.6
2017-04-12 CVE-2017-3007 Untrusted Search Path vulnerability in Adobe Creative Cloud
Adobe Thor versions 3.9.5.353 and earlier have a vulnerability in the directory search path used to find resources, related to Creative Cloud desktop applications.
local
low complexity
adobe microsoft CWE-426
4.6
2017-04-12 CVE-2017-3006 Incorrect Permission Assignment for Critical Resource vulnerability in Adobe Creative Cloud
Adobe Thor versions 3.9.5.353 and earlier have a vulnerability related to the use of improper resource permissions during the installation of Creative Cloud desktop applications.
network
low complexity
adobe microsoft CWE-732
critical
9.0
2016-10-13 CVE-2016-6935 Unquoted Search Path or Element vulnerability in Adobe Creative Cloud
Unquoted Windows search path vulnerability in Adobe Creative Cloud Desktop Application before 3.8.0.310 on Windows allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory.
local
low complexity
adobe CWE-428
7.2
2016-06-16 CVE-2016-4158 Permissions, Privileges, and Access Controls vulnerability in multiple products
Unquoted Windows search path vulnerability in Adobe Creative Cloud Desktop Application before 3.7.0.272 on Windows allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory.
6.9
2016-06-16 CVE-2016-4157 Permissions, Privileges, and Access Controls vulnerability in Adobe Creative Cloud
Untrusted search path vulnerability in the installer in Adobe Creative Cloud Desktop Application before 3.7.0.272 on Windows allows local users to gain privileges via a Trojan horse resource in an unspecified directory.
local
adobe CWE-264
6.9
2016-04-12 CVE-2016-1034 Arbitrary File Read and Write vulnerability in Adobe Creative Cloud
The Sync Process in the JavaScript API for Creative Cloud Libraries in Adobe Creative Cloud Desktop Application before 3.6.0.244 allows remote attackers to read or write to arbitrary files via unspecified vectors.
network
low complexity
adobe
critical
9.4