Vulnerabilities > Adobe

DATE CVE VULNERABILITY TITLE RISK
2019-07-18 CVE-2019-7850 Command Injection vulnerability in Adobe Campaign
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have a Command injection vulnerability.
network
low complexity
adobe CWE-77
critical
9.8
2019-07-18 CVE-2019-7848 Unspecified vulnerability in Adobe Campaign
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Inadequate access control vulnerability.
network
low complexity
adobe
7.5
2019-07-18 CVE-2019-7847 XXE vulnerability in Adobe Campaign
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Improper Restriction of XML External Entity Reference ('XXE') vulnerability.
network
low complexity
adobe CWE-611
7.5
2019-07-18 CVE-2019-7846 Improper Handling of Exceptional Conditions vulnerability in Adobe Campaign
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Improper error handling vulnerability.
network
low complexity
adobe CWE-755
7.5
2019-07-18 CVE-2019-7843 Improper Input Validation vulnerability in Adobe Campaign
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Insufficient input validation vulnerability.
network
low complexity
adobe CWE-20
7.5
2019-06-12 CVE-2019-7845 Use After Free vulnerability in multiple products
Adobe Flash Player versions 32.0.0.192 and earlier, 32.0.0.192 and earlier, and 32.0.0.192 and earlier have an use after free vulnerability.
network
low complexity
adobe redhat CWE-416
8.8
2019-06-12 CVE-2019-7840 Deserialization of Untrusted Data vulnerability in Adobe Coldfusion 11.0/2016/2018
ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a deserialization of untrusted data vulnerability.
network
low complexity
adobe CWE-502
critical
9.8
2019-06-12 CVE-2019-7839 Command Injection vulnerability in Adobe Coldfusion 11.0/2016/2018
ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a command injection vulnerability.
network
low complexity
adobe CWE-77
critical
9.8
2019-06-12 CVE-2019-7838 Unrestricted Upload of File with Dangerous Type vulnerability in Adobe Coldfusion 11.0/2016/2018
ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a file extension blacklist bypass vulnerability.
network
low complexity
adobe CWE-434
critical
9.8
2019-05-29 CVE-2019-7129 Cross-site Scripting vulnerability in Adobe Experience Manager Forms 6.2/6.3/6.4
Adobe Experience Manager Forms versions 6.2, 6.3 and 6.4 have a stored cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1