Heap Overflow Vulnerability in Adobe DNG Software Development Kit
CVE-2020-9621
7.8HIGH
Key Information:
- Vendor
Adobe
- Vendor
- CVE Published:
- 26 June 2020
What is CVE-2020-9621?
The Adobe DNG Software Development Kit (SDK) is vulnerable to a heap overflow issue in versions up to 1.5. This vulnerability may allow an attacker to exploit the software and execute arbitrary code, potentially compromising system integrity and security. Users are encouraged to review the latest updates and implement necessary security measures to mitigate potential risks.
Affected Version(s)
Adobe DNG Software Development Kit (SDK) Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions
References
EPSS Score
5% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved