Lucene search

K
cve[email protected]CVE-2019-7137
HistoryMay 23, 2019 - 4:29 p.m.

CVE-2019-7137

2019-05-2316:29:09
CWE-787
web.nvd.nist.gov
35
cve-2019-7137
adobe bridge cc
memory corruption
vulnerability
information disclosure
nvd

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.5 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

6.7 Medium

AI Score

Confidence

High

0.015 Low

EPSS

Percentile

87.0%

Adobe Bridge CC versions 9.0.2 have a memory corruption vulnerability. Successful exploitation could lead to information disclosure.

Affected configurations

Vulners
NVD
Node
adobebridge_ccRange9.0.2
VendorProductVersionCPE
adobebridge_cc*cpe:2.3:a:adobe:bridge_cc:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Adobe Bridge CC",
    "vendor": "Adobe",
    "versions": [
      {
        "status": "affected",
        "version": "9.0.2 versions"
      }
    ]
  }
]

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.5 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

6.7 Medium

AI Score

Confidence

High

0.015 Low

EPSS

Percentile

87.0%