CVE-2020-24418
Adobe After Effects Out-of-Bounds Read Vulnerability
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7.8EPSS 3.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
21 oct 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Adobe After Effects version 17.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .aepx file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. This vulnerability requires user interaction to exploit.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Productos afectados
Adobe · After Effects¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →