Vulnerabilities > Adobe > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-08-14 CVE-2024-41860 Out-of-bounds Read vulnerability in Adobe Substance 3D Sampler 4.2.1
Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-08-14 CVE-2024-41861 Out-of-bounds Read vulnerability in Adobe Substance 3D Sampler 4.2.1
Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-08-14 CVE-2024-41862 Out-of-bounds Read vulnerability in Adobe Substance 3D Sampler 4.2.1
Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-08-14 CVE-2024-41863 Out-of-bounds Read vulnerability in Adobe Substance 3D Sampler 4.2.1
Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-07-31 CVE-2024-39379 Out-of-bounds Read vulnerability in Adobe Acrobat 120.0.2210.91
Acrobat for Edge versions 126.0.2592.81 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-07-23 CVE-2024-41836 NULL Pointer Dereference vulnerability in Adobe Indesign
InDesign Desktop versions ID18.5.2, ID19.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS) condition.
local
low complexity
adobe CWE-476
5.5
2024-07-09 CVE-2024-34140 Unspecified vulnerability in Adobe Bridge
Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2024-06-13 CVE-2024-36152 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe
5.4
2024-06-13 CVE-2024-36160 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe
5.4
2024-06-13 CVE-2024-36173 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields.
network
low complexity
adobe
5.4