Vulnerabilities > Adobe

DATE CVE VULNERABILITY TITLE RISK
2021-09-08 CVE-2021-28568 Exposure of Resource to Wrong Sphere vulnerability in Adobe Genuine Service 7.1
Adobe Genuine Services version 7.1 (and earlier) is affected by an Insecure file permission vulnerability during installation process.
local
low complexity
adobe CWE-668
6.5
2021-09-08 CVE-2021-28571 Unspecified vulnerability in Adobe After Effects
Adobe After Effects version 18.1 (and earlier) is affected by a potential Command injection vulnerability when chained with a development and debugging tool for JavaScript scripts.
network
low complexity
adobe
8.8
2021-09-08 CVE-2021-28580 Unspecified vulnerability in Adobe Medium 2.4.5.331
Medium by Adobe version 2.4.5.331 (and earlier) is affected by a buffer overflow vulnerability when parsing a crafted file.
local
low complexity
adobe
7.8
2021-09-02 CVE-2021-28550 Unspecified vulnerability in Adobe products
Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by a Use After Free vulnerability.
network
low complexity
adobe
8.8
2021-09-02 CVE-2021-28553 Unspecified vulnerability in Adobe products
Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by an Use After Free vulnerability.
network
low complexity
adobe
8.8
2021-09-02 CVE-2021-28565 Unspecified vulnerability in Adobe products
Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by an Out-of-bounds Read vulnerability in the PDFLibTool component.
network
low complexity
adobe
8.8
2021-09-02 CVE-2021-35996 Out-of-bounds Write vulnerability in Adobe After Effects
Adobe After Effects version 18.2.1 (and earlier) is affected by a memory corruption vulnerability when parsing a specially crafted file.
local
low complexity
adobe CWE-787
7.8
2021-09-02 CVE-2021-21086 Out-of-bounds Write vulnerability in Adobe products
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by an Out-of-bounds Write vulnerability in the CoolType library.
local
low complexity
adobe CWE-787
7.8
2021-09-01 CVE-2021-36002 Exposure of Resource to Wrong Sphere vulnerability in Adobe Captivate
Adobe Captivate version 11.5.5 (and earlier) is affected by an Creation of Temporary File In Directory With Incorrect Permissions vulnerability that could result in privilege escalation in the context of the current user.
local
low complexity
adobe CWE-668
7.3
2021-09-01 CVE-2021-36020 XML Injection (aka Blind XPath Injection) vulnerability in Adobe Commerce and Magento Open Source
Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an XML Injection vulnerability in the 'City' field.
network
low complexity
adobe CWE-91
critical
9.8