Insecure Library Loading Vulnerability in Adobe Digital Editions
CVE-2017-3097

9.8CRITICAL

Key Information:

Vendor
Adobe
Vendor
CVE Published:
20 June 2017

Summary

Adobe Digital Editions versions 4.5.4 and earlier are affected by a vulnerability that allows for insecure library loading through its installer plugin. This flaw can be exploited to execute arbitrary code on the affected system, posing significant security risks to users. Proper measures must be taken to update to secure versions and mitigate potential threats.

Affected Version(s)

Adobe Digital Editions 4.5.4 and earlier. Adobe Digital Editions 4.5.4 and earlier.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.