Vulnerabilities > Adobe > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-03-27 CVE-2023-25878 Unspecified vulnerability in Adobe Substance 3D Stager
Adobe Substance 3D Stager versions 2.0.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2023-03-22 CVE-2023-22271 Inadequate Encryption Strength vulnerability in Adobe Experience Manager
Experience Manager versions 6.5.15.0 (and earlier) are affected by a Weak Cryptography for Passwords vulnerability that can lead to a security feature bypass.
network
high complexity
adobe CWE-326
5.3
2023-02-17 CVE-2023-21620 Unspecified vulnerability in Adobe Framemaker
FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2023-01-18 CVE-2023-21603 Unspecified vulnerability in Adobe Dimension 3.4.3
Adobe Dimension version 3.4.6 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2023-01-13 CVE-2023-21598 Use After Free vulnerability in Adobe Incopy 17.0/17.4/18.0
Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-416
5.5
2023-01-13 CVE-2023-21599 Unspecified vulnerability in Adobe Incopy 17.0/17.4/18.0
Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2023-01-13 CVE-2023-21591 Unspecified vulnerability in Adobe Indesign 17.0/17.2.1/18.0
Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2023-01-13 CVE-2023-21592 Unspecified vulnerability in Adobe Indesign 17.0/17.2.1/18.0
Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
5.5
2022-12-19 CVE-2022-35695 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager version 6.5.14 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability.
network
low complexity
adobe
5.4
2022-12-19 CVE-2022-42352 Unspecified vulnerability in Adobe Experience Manager
Adobe Experience Manager version 6.5.14 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability.
network
low complexity
adobe
5.4