Vulnerabilities > Adobe > High

DATE CVE VULNERABILITY TITLE RISK
2022-10-14 CVE-2022-38422 Path Traversal vulnerability in Adobe Coldfusion 2018/2021
Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in information disclosure.
network
low complexity
adobe CWE-22
7.5
2022-10-14 CVE-2022-38424 Path Traversal vulnerability in Adobe Coldfusion 2018/2021
Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary file system write.
network
low complexity
adobe CWE-22
7.2
2022-10-14 CVE-2022-38440 Out-of-bounds Read vulnerability in Adobe Dimension 3.4.3
Adobe Dimension versions 3.4.5 is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe CWE-125
7.8
2022-10-14 CVE-2022-38441 Out-of-bounds Read vulnerability in Adobe Dimension 3.4.3
Adobe Dimension versions 3.4.5 is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe CWE-125
7.8
2022-10-14 CVE-2022-38442 Use After Free vulnerability in Adobe Dimension 3.4.3
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2022-10-14 CVE-2022-38444 Use After Free vulnerability in Adobe Dimension 3.4.3
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2022-10-14 CVE-2022-38445 Use After Free vulnerability in Adobe Dimension 3.4.3
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2022-10-14 CVE-2022-38446 Use After Free vulnerability in Adobe Dimension 3.4.3
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2022-10-14 CVE-2022-38447 Use After Free vulnerability in Adobe Dimension 3.4.3
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8
2022-10-14 CVE-2022-38448 Use After Free vulnerability in Adobe Dimension 3.4.3
Adobe Dimension versions 3.4.5 is affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-416
7.8