Adobe Creative Cloud Desktop Vulnerability Could Lead to Arbitrary File Delete
CVE-2024-34116
7.1HIGH
Summary
The vulnerability in Adobe Creative Cloud Desktop versions up to 6.1.0.587 highlights an Uncontrolled Search Path Element flaw. This issue allows an attacker to compromise security features by loading and executing malicious libraries, which can lead to unauthorized arbitrary file deletion. Exploitation of this vulnerability necessitates user interaction, making security awareness crucial for users of the affected software.
Affected Version(s)
Creative Cloud Desktop 0 <= 6.1.0.587
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved