Vulnerabilities > Adobe > High

DATE CVE VULNERABILITY TITLE RISK
2023-04-13 CVE-2023-26416 Out-of-bounds Write vulnerability in Adobe Substance 3D Designer
Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2023-04-12 CVE-2023-21582 Out-of-bounds Write vulnerability in Adobe Digital Editions
Adobe Digital Editions version 4.5.11.187303 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2023-04-12 CVE-2023-22235 Use After Free vulnerability in Adobe Incopy
InCopy versions 18.1 (and earlier), 17.4 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2023-04-12 CVE-2023-26395 Out-of-bounds Write vulnerability in Adobe products
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2023-04-12 CVE-2023-26396 Creation of Temporary File in Directory with Incorrect Permissions vulnerability in Adobe products
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by a Creation of Temporary File in Directory with Incorrect Permissions vulnerability that could result in privilege escalation in the context of the current user.
local
low complexity
adobe CWE-379
7.8
2023-04-12 CVE-2023-26405 Improper Input Validation vulnerability in Adobe products
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-20
7.8
2023-04-12 CVE-2023-26406 Unspecified vulnerability in Adobe products
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an Improper Access Control vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe
7.8
2023-04-12 CVE-2023-26407 Improper Input Validation vulnerability in Adobe products
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-20
7.8
2023-04-12 CVE-2023-26408 Unspecified vulnerability in Adobe products
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an Improper Access Control vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe
7.8
2023-04-12 CVE-2023-26417 Use After Free vulnerability in Adobe products
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8