Lucene search

K
adobeAdobeAPSB21-116
HistoryDec 14, 2021 - 12:00 a.m.

APSB21-116 : Security update available for Adobe Dimension

2021-12-1400:00:00
helpx.adobe.com
538
adobe
dimension
update
vulnerabilities
arbitrary code execution
privilege escalation
software

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

EPSS

0.003

Percentile

69.8%

Adobe has released an update for Adobe Dimension. This update addresses critical, important and moderate vulnerabilities. Successful exploitation could lead to arbitrary code execution and privilege escalation in the context of the current user.

Affected configurations

Vulners
Node
adobedimensionRange3.4.3
VendorProductVersionCPE
adobedimension*cpe:2.3:a:adobe:dimension:*:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

EPSS

0.003

Percentile

69.8%