Vulnerabilities > Adobe > Indesign > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-10-21 CVE-2020-24421 NULL Pointer Dereference vulnerability in Adobe Indesign
Adobe InDesign version 15.1.2 (and earlier) is affected by a NULL pointer dereference bug that occurs when handling a malformed .indd file.
network
adobe CWE-476
4.3
2020-09-10 CVE-2020-9731 Out-of-bounds Write vulnerability in Adobe Indesign
A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions).
network
adobe CWE-787
6.8
2020-09-10 CVE-2020-9730 Out-of-bounds Write vulnerability in Adobe Indesign
A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions).
network
adobe CWE-787
6.8
2020-09-10 CVE-2020-9729 Out-of-bounds Write vulnerability in Adobe Indesign
A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions).
network
adobe CWE-787
6.8
2020-09-10 CVE-2020-9728 Out-of-bounds Write vulnerability in Adobe Indesign
A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions).
network
adobe CWE-787
6.8
2020-09-10 CVE-2020-9727 Out-of-bounds Write vulnerability in Adobe Indesign
A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions).
network
adobe CWE-787
6.8
2018-05-19 CVE-2018-4927 Untrusted Search Path vulnerability in Adobe Indesign
Adobe InDesign versions 13.0 and below have an exploitable Untrusted Search Path vulnerability.
6.8
2006-02-02 CVE-2006-0525 Permissions, Privileges, and Access Controls vulnerability in Adobe products
Multiple Adobe products, including (1) Photoshop CS2, (2) Illustrator CS2, and (3) Adobe Help Center, install a large number of .EXE and .DLL files with write-access permission for the Everyone group, which allows local users to gain privileges via Trojan horse programs.
local
low complexity
adobe CWE-264
4.6