Adobe Creative Cloud Desktop Vulnerability Could Lead to Arbitrary File Delete
CVE-2024-34116

7.1HIGH

Key Information:

Vendor
Adobe
Vendor
CVE Published:
13 June 2024

Summary

The vulnerability in Adobe Creative Cloud Desktop versions up to 6.1.0.587 highlights an Uncontrolled Search Path Element flaw. This issue allows an attacker to compromise security features by loading and executing malicious libraries, which can lead to unauthorized arbitrary file deletion. Exploitation of this vulnerability necessitates user interaction, making security awareness crucial for users of the affected software.

Affected Version(s)

Creative Cloud Desktop 0 <= 6.1.0.587

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.