Page 3 of 22 results (0.004 seconds)

CVSS: 7.3EPSS: 0%CPEs: 2EXPL: 0

16 Jun 2016 — Unquoted Windows search path vulnerability in Adobe Creative Cloud Desktop Application before 3.7.0.272 on Windows allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory. Vulnerabilidad de ruta de búsqueda sin entrecomillar en Windows en Adobe Creative Cloud Desktop Application en versiones anteriores a 3.7.0.272 en Windows permite a usuarios locales obtener privilegios a través de un archivo ejecutable Troyano en el directorio %SYSTEMDRIVE%. • https://helpx.adobe.com/security/products/creative-cloud/apsb16-21.html • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 9.4EPSS: 65%CPEs: 1EXPL: 0

12 Apr 2016 — The Sync Process in the JavaScript API for Creative Cloud Libraries in Adobe Creative Cloud Desktop Application before 3.6.0.244 allows remote attackers to read or write to arbitrary files via unspecified vectors. El Sync Process en la API JavaScript para Creative Cloud Libraries en Adobe Creative Cloud Desktop Application en versiones anteriores a 3.6.0.244 permite a atacantes remotos leer o escribir en archivos arbitrarios a través de vectores no especificados. This vulnerability allows remote attackers t... • http://www.zerodayinitiative.com/advisories/ZDI-16-235 •