Vulnerabilities > Adobe > Illustrator > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-01-13 CVE-2021-21007 Uncontrolled Search Path Element vulnerability in Adobe Illustrator
Adobe Illustrator version 25.0 (and earlier) is affected by an uncontrolled search path element that could result in arbitrary code execution in the context of the current user.
network
adobe CWE-427
6.8
2020-10-20 CVE-2020-24415 Out-of-bounds Write vulnerability in Adobe Illustrator
Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file.
network
adobe CWE-787
6.8
2020-10-20 CVE-2020-24414 Out-of-bounds Write vulnerability in Adobe Illustrator
Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file.
network
adobe CWE-787
6.8
2020-10-20 CVE-2020-24413 Out-of-bounds Write vulnerability in Adobe Illustrator
Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file.
network
adobe CWE-787
6.8
2020-10-20 CVE-2020-24412 Out-of-bounds Write vulnerability in Adobe Illustrator
Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file.
network
adobe CWE-787
6.8
2020-10-20 CVE-2020-24411 Out-of-bounds Write vulnerability in Adobe Illustrator
Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds write vulnerability when handling crafted PDF files.
network
adobe CWE-787
6.8
2020-10-20 CVE-2020-24410 Out-of-bounds Read vulnerability in Adobe Illustrator
Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds read vulnerability when parsing crafted PDF files.
network
adobe CWE-125
6.8
2020-10-20 CVE-2020-24409 Out-of-bounds Read vulnerability in Adobe Illustrator
Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds read vulnerability when parsing crafted PDF files.
network
adobe CWE-125
6.8
2006-02-02 CVE-2006-0525 Permissions, Privileges, and Access Controls vulnerability in Adobe products
Multiple Adobe products, including (1) Photoshop CS2, (2) Illustrator CS2, and (3) Adobe Help Center, install a large number of .EXE and .DLL files with write-access permission for the Everyone group, which allows local users to gain privileges via Trojan horse programs.
local
low complexity
adobe CWE-264
4.6