CVE-2020-3808

5.9MEDIUM

Key Information:

Vendor
Adobe
Vendor
CVE Published:
25 March 2020

Summary

Creative Cloud Desktop Application versions 5.0 and earlier have a time-of-check to time-of-use (toctou) race condition vulnerability. Successful exploitation could lead to arbitrary file deletion.

Affected Version(s)

Creative Cloud Desktop Application Creative Cloud Desktop Application versions

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.