Insecure Library Loading in Adobe Prelude CC by Adobe
CVE-2019-7961

7.8HIGH

Key Information:

Vendor
Adobe
Vendor
CVE Published:
14 August 2019

Summary

Adobe Prelude CC versions 8.1 and earlier are vulnerable to an insecure library loading issue, also known as DLL hijacking. This vulnerability arises when an attacker can manipulate the loading process of dynamic link libraries, potentially leading to arbitrary code execution. Successful exploitation can enable attackers to run untrusted code within the context of the affected application, posing significant security risks. Users are advised to update to the latest version to mitigate these risks. For more detailed information, refer to the Adobe security advisory link.

Affected Version(s)

Adobe Prelude CC 8.1 and earlier versions

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.