Vulnerabilities > Adobe > Creative Cloud

DATE CVE VULNERABILITY TITLE RISK
2018-08-29 CVE-2018-5003 Untrusted Search Path vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application before 4.5.5.342 (installer) has an insecure library loading (dll hijacking) vulnerability.
local
low complexity
adobe CWE-426
7.8
2018-08-29 CVE-2018-12829 Improper Certificate Validation vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application before 4.6.1 has an improper certificate validation vulnerability.
network
low complexity
adobe CWE-295
critical
9.8
2018-05-19 CVE-2018-4992 Improper Input Validation vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper input validation vulnerability.
local
low complexity
adobe CWE-20
7.8
2018-05-19 CVE-2018-4991 Improper Certificate Validation vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper certificate validation vulnerability.
network
low complexity
adobe CWE-295
critical
9.8
2018-05-19 CVE-2018-4873 Unquoted Search Path or Element vulnerability in Adobe Creative Cloud
Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Unquoted Search Path vulnerability.
local
low complexity
adobe CWE-428
7.8
2017-04-12 CVE-2017-3007 Untrusted Search Path vulnerability in Adobe Creative Cloud
Adobe Thor versions 3.9.5.353 and earlier have a vulnerability in the directory search path used to find resources, related to Creative Cloud desktop applications.
local
low complexity
adobe CWE-426
7.8
2017-04-12 CVE-2017-3006 Incorrect Permission Assignment for Critical Resource vulnerability in Adobe Creative Cloud
Adobe Thor versions 3.9.5.353 and earlier have a vulnerability related to the use of improper resource permissions during the installation of Creative Cloud desktop applications.
network
low complexity
adobe CWE-732
8.8
2016-10-13 CVE-2016-6935 Unquoted Search Path or Element vulnerability in Adobe Creative Cloud
Unquoted Windows search path vulnerability in Adobe Creative Cloud Desktop Application before 3.8.0.310 on Windows allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory.
local
low complexity
adobe CWE-428
7.8
2016-06-16 CVE-2016-4158 Permissions, Privileges, and Access Controls vulnerability in multiple products
Unquoted Windows search path vulnerability in Adobe Creative Cloud Desktop Application before 3.7.0.272 on Windows allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory.
local
low complexity
microsoft adobe CWE-264
7.3
2016-06-16 CVE-2016-4157 Permissions, Privileges, and Access Controls vulnerability in Adobe Creative Cloud
Untrusted search path vulnerability in the installer in Adobe Creative Cloud Desktop Application before 3.7.0.272 on Windows allows local users to gain privileges via a Trojan horse resource in an unspecified directory.
local
low complexity
adobe CWE-264
7.3