Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution
ID: 2b27a16f-8727-5ba4-b7c0-bf0b1fb6b571
STIX ID: report--2b27a16f-8727-5ba4-b7c0-bf0b1fb6b571
Feed Name: CISecurity.org Advisories
Multiple critical and high-severity vulnerabilities affecting numerous Adobe products are disclosed, including CVEs that may enable arbitrary code execution (heap-based buffer overflows, out-of-bounds reads/writes, double free, NULL pointer dereference, write-what-where, integer underflow) and an SSRF in Adobe Commerce. The report enumerates CVE IDs per product and maps the issues to ATT&CK (Execution — Exploitation for Client Execution); no information about active exploitation is provided.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
