
CVE-2021-4399 – Edwiser Bridge <= 2.0.6 - Cross-Site Request Forgery Bypass
https://notcve.org/view.php?id=CVE-2021-4399
28 Jun 2021 — The Edwiser Bridge plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,2.0.6. This is due to missing or incorrect nonce validation on the user_data_synchronization_initiater(), course_synchronization_initiater(), users_link_to_moodle_synchronization(), connection_test_initiater(), admin_menus(), and subscribe_handler() function. This makes it possible for unauthenticated attackers to perform unauthorized actions via a forged request granted they can trick a site... • https://blog.nintechnet.com/25-wordpress-plugins-vulnerable-to-csrf-attacks • CWE-352: Cross-Site Request Forgery (CSRF) •

CVE-2021-21091 – Adobe Bridge HEIC File Parsing Out-Of-Bounds Read vulnerability could lead to information disclosure
https://notcve.org/view.php?id=CVE-2021-21091
15 Apr 2021 — Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds read vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Bridge versiones 10.1.1 (y anteriores) y versiones 11.0.1 (y anteriores) están afectadas por una vulnerabilidad de lectu... • https://helpx.adobe.com/security/products/bridge/apsb21-23.html • CWE-125: Out-of-bounds Read •

CVE-2021-21092 – Adobe Bridge DCM File Parsing Memory Corruption could lead to arbitrary code execution
https://notcve.org/view.php?id=CVE-2021-21092
15 Apr 2021 — Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Bridge versiones 10.1.1 (y anteriores) y versiones 11.0.1 (y anteriores) están afectadas por una vulnerabilidad de co... • https://helpx.adobe.com/security/products/bridge/apsb21-23.html • CWE-787: Out-of-bounds Write CWE-788: Access of Memory Location After End of Buffer •

CVE-2021-21093 – Adobe Bridge SGI File Parsing Memory Corruption vulnerability could lead to arbitrary code execution
https://notcve.org/view.php?id=CVE-2021-21093
15 Apr 2021 — Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Bridge versiones 10.1.1 (y anteriores) y versiones 11.0.1 (y anteriores), están afectadas por una vulnerabilidad de c... • https://helpx.adobe.com/security/products/bridge/apsb21-23.html • CWE-787: Out-of-bounds Write CWE-788: Access of Memory Location After End of Buffer •

CVE-2021-21094 – Adobe Bridge PDF File Parsing Out-Of-Bounds Write vulnerability could lead to arbitrary code execution
https://notcve.org/view.php?id=CVE-2021-21094
15 Apr 2021 — Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Bridge versiones 10.1.1 (y anteriores) y versiones 11.0.1 (y anteriores), están afectadas por una vulnerabilidad d... • https://helpx.adobe.com/security/products/bridge/apsb21-23.html • CWE-787: Out-of-bounds Write •

CVE-2021-21095 – Adobe Bridge TTF Font Parsing Out-Of-Bounds Write vulnerability could lead to arbitrary code execution
https://notcve.org/view.php?id=CVE-2021-21095
15 Apr 2021 — Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Bridge versiones 10.1.1 (y anteriores) y versiones 11.0.1 (y anteriores), están afectadas por una vulnerabilidad de escritur... • https://helpx.adobe.com/security/products/bridge/apsb21-23.html • CWE-787: Out-of-bounds Write •

CVE-2021-21096 – Adobe Bridge Genuine Software Service Incorrect Permission Assignment could lead to Denial-of-Service
https://notcve.org/view.php?id=CVE-2021-21096
15 Apr 2021 — Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Improper Authorization vulnerability in the Genuine Software Service. A low-privileged attacker could leverage this vulnerability to achieve application denial-of-service in the context of the current user. Exploitation of this issue does not require user interaction. Adobe Bridge versiones 10.1.1 (y anteriores) y versiones 11.0.1 (y anteriores) están afectadas por una vulnerabilidad de Autorización Inapropiada en Genuine... • https://helpx.adobe.com/security/products/bridge/apsb21-23.html • CWE-285: Improper Authorization •

CVE-2021-21065 – Adobe Bridge Font Parsing Out-Of-Bounds Write Arbitrary Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-21065
12 Jan 2021 — Adobe Bridge version 11.0 (and earlier) is affected by an out-of-bounds write vulnerability when parsing TTF files that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Bridge versiones 11.0 (y anteriores) está afectada por una vulnerabilidad de escritura fuera de límites al analizar archivos TTF que podría resultar en una ejecución de código arbitraria en el contexto del usuar... • https://helpx.adobe.com/security/products/bridge/apsb21-07.html • CWE-787: Out-of-bounds Write •

CVE-2021-21066 – Adobe Bridge Font Parsing Out-Of-Bounds Write Arbitrary Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-21066
12 Jan 2021 — Adobe Bridge version 11.0 (and earlier) is affected by an out-of-bounds write vulnerability when parsing TTF files that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Bridge versiones 11.0 (y anteriores) está afectada por una vulnerabilidad de escritura fuera de límites al analizar archivos TTF que podría resultar en una ejecución de código arbitraria en el contexto del usuar... • https://helpx.adobe.com/security/products/bridge/apsb21-07.html • CWE-787: Out-of-bounds Write •

CVE-2020-9674 – Adobe Bridge MP4 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-9674
22 Jul 2020 — Adobe Bridge versions 10.0.3 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution. Adobe Bridge versiones 10.0.3 y anteriores, presenta una vulnerabilidad de escritura fuera de límites. Una explotación con éxito podría conllevar a una ejecución de código arbitraria This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adobe Bridge. User interaction is required to exploit this vulnerability in that th... • https://helpx.adobe.com/security/products/bridge/apsb20-44.html • CWE-787: Out-of-bounds Write •