Adobe Creative Cloud Privilege Escalation Vulnerability
CVE-2021-21069

7.8HIGH

Key Information:

Vendor
Adobe
Vendor
CVE Published:
12 March 2021

Summary

Adobe Creative Cloud Desktop Application version 5.3 (and earlier) is affected by a local privilege escalation vulnerability that could allow an attacker to call functions against the installer to perform high privileged actions. Exploitation of this issue does not require user interaction.

Affected Version(s)

Creative Cloud (desktop component) <= 5.3.1.470a

Creative Cloud (desktop component) <= unspecified

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.