OS Command Injection Vulnerability in Adobe Dreamweaver by Adobe
CVE-2018-4924

9.8CRITICAL

Key Information:

Vendor
Adobe
Vendor
CVE Published:
19 May 2018

Summary

Adobe Dreamweaver CC versions 18.0 and earlier contain a vulnerability that allows for OS Command Injection. This flaw enables an attacker to execute arbitrary code within the context of the current user, potentially compromising the security of the affected system. It is crucial for users to apply available patches or updates to mitigate this risk and secure their environments against potential exploitation.

Affected Version(s)

Adobe Dreamweaver CC 18.0 and earlier Adobe Dreamweaver CC 18.0 and earlier versions

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.