Lucene search

K

Bridge Security Vulnerabilities

cve
cve

CVE-2022-28843

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.8AI Score

0.001EPSS

2022-06-15 08:15 PM
58
6
cve
cve

CVE-2022-28844

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.8AI Score

0.001EPSS

2022-06-15 08:15 PM
53
5
cve
cve

CVE-2022-28845

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.8AI Score

0.001EPSS

2022-06-15 08:15 PM
57
6
cve
cve

CVE-2022-28846

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.8AI Score

0.001EPSS

2022-06-15 08:15 PM
67
6
cve
cve

CVE-2022-28841

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.8AI Score

0.001EPSS

2022-06-15 08:15 PM
44
5
cve
cve

CVE-2022-28847

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.8AI Score

0.001EPSS

2022-06-15 08:15 PM
53
6
cve
cve

CVE-2022-28849

Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.7AI Score

0.003EPSS

2022-06-15 08:15 PM
65
5
cve
cve

CVE-2022-28842

Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.7AI Score

0.006EPSS

2022-06-15 08:15 PM
51
5
cve
cve

CVE-2022-28850

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a.....

5.5CVSS

5.8AI Score

0.002EPSS

2022-06-15 08:15 PM
70
6
cve
cve

CVE-2022-28840

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.8AI Score

0.001EPSS

2022-06-15 08:15 PM
66
6
cve
cve

CVE-2022-28839

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious...

7.8CVSS

7.8AI Score

0.001EPSS

2022-06-15 08:15 PM
70
6
cve
cve

CVE-2022-32550

An issue was discovered in AgileBits 1Password, involving the method various 1Password apps and integrations used to create connections to the 1Password service. In specific circumstances, this issue allowed a malicious server to convince a 1Password app or integration it is communicating with the....

4.8CVSS

5AI Score

0.001EPSS

2022-06-15 07:15 PM
1497
cve
cve

CVE-2022-29166

matrix-appservice-irc is a Node.js IRC bridge for Matrix. The vulnerability in node-irc allows an attacker to manipulate a Matrix user into executing IRC commands by having them reply to a maliciously crafted message. The vulnerability has been patched in matrix-appservice-irc 0.33.2. Refrain from....

8.8CVSS

8.6AI Score

0.002EPSS

2022-05-05 11:15 PM
48
2
cve
cve

CVE-2021-38125

Unauthenticated remote code execution in Micro Focus Operations Bridge containerized, affecting versions 2021.05, 2021.08, and newer versions of Micro Focus Operations Bridge containerized if the deployment was upgraded from 2021.05 or 2021.08. The vulnerability could be exploited to...

9.8CVSS

9.8AI Score

0.005EPSS

2022-04-11 08:15 PM
53
cve
cve

CVE-2021-42730

Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious PSD file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.8AI Score

0.001EPSS

2022-03-16 03:15 PM
77
cve
cve

CVE-2021-42724

Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.8AI Score

0.001EPSS

2022-03-16 03:15 PM
67
cve
cve

CVE-2021-42722

Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user....

7.8CVSS

7.4AI Score

0.001EPSS

2022-03-16 03:15 PM
44
cve
cve

CVE-2021-42728

Adobe Bridge 11.1.1 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted file in...

7.8CVSS

7.7AI Score

0.002EPSS

2022-03-16 03:15 PM
123
cve
cve

CVE-2021-42729

Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious WAV file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.8AI Score

0.001EPSS

2022-03-16 03:15 PM
70
cve
cve

CVE-2021-42720

Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user....

7.8CVSS

7.4AI Score

0.001EPSS

2022-03-16 03:15 PM
60
cve
cve

CVE-2021-42533

Adobe Bridge version 11.1.1 (and earlier) is affected by a double free vulnerability when parsing a crafted DCM file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to...

7.8CVSS

7.6AI Score

0.001EPSS

2022-03-16 03:15 PM
63
cve
cve

CVE-2021-42719

Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .jpe file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current...

7.8CVSS

7.4AI Score

0.001EPSS

2022-03-16 03:15 PM
64
cve
cve

CVE-2021-40750

Adobe Bridge version 11.1.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of...

5.5CVSS

5.9AI Score

0.001EPSS

2022-03-16 03:15 PM
77
cve
cve

CVE-2021-25112

The WHMCS Bridge WordPress plugin before 6.4b does not sanitise and escape the error parameter before outputting it back in admin dashboard, leading to a Reflected Cross-Site...

6.1CVSS

6AI Score

0.001EPSS

2022-02-28 09:15 AM
61
cve
cve

CVE-2021-4074

The WHMCS Bridge WordPress plugin is vulnerable to Stored Cross-Site Scripting via the cc_whmcs_bridge_url parameter found in the ~/whmcs-bridge/bridge_cp.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 6.1. Due to missing authorization checks on...

6.4CVSS

5.1AI Score

0.001EPSS

2022-01-18 05:15 PM
39
cve
cve

CVE-2021-45051

Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an use-after-free vulnerability in the processing of Format event actions that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR....

5.5CVSS

5AI Score

0.002EPSS

2022-01-14 08:15 PM
30
cve
cve

CVE-2021-45052

Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user....

5.5CVSS

4.9AI Score

0.003EPSS

2022-01-14 08:15 PM
36
cve
cve

CVE-2021-44743

Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a...

7.8CVSS

7.7AI Score

0.003EPSS

2022-01-14 08:15 PM
36
cve
cve

CVE-2021-44185

Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user....

3.3CVSS

4.7AI Score

0.001EPSS

2022-01-11 12:00 AM
51
cve
cve

CVE-2021-44186

Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user....

3.3CVSS

4.1AI Score

0.001EPSS

2022-01-11 12:00 AM
37
cve
cve

CVE-2021-44187

Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user....

3.3CVSS

4.7AI Score

0.001EPSS

2022-01-11 12:00 AM
38
cve
cve

CVE-2021-42733

Adobe Bridge version 11.1.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of...

5.5CVSS

5.4AI Score

0.001EPSS

2021-11-22 04:15 PM
31
4
cve
cve

CVE-2021-42727

Adobe Bridge 11.1.1 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted file in...

7.8CVSS

7.7AI Score

0.059EPSS

2021-11-22 04:15 PM
43
cve
cve

CVE-2021-42723

Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted SGI file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current...

7.8CVSS

7.5AI Score

0.001EPSS

2021-11-16 10:15 PM
28
cve
cve

CVE-2021-42725

Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious M4A file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

8AI Score

0.001EPSS

2021-11-16 10:15 PM
34
cve
cve

CVE-2021-42721

Acrobat Bridge versions 11.1.1 and earlier are affected by a use-after-free vulnerability in the processing of Format event actions that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a...

7.8CVSS

7.8AI Score

0.009EPSS

2021-11-16 09:15 PM
27
cve
cve

CVE-2021-42726

Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious M4A file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.9AI Score

0.001EPSS

2021-11-16 08:15 PM
27
cve
cve

CVE-2021-38864

IBM Security Verify Bridge 1.0.5.0 could allow a user to obtain sensitive information due to improper certificate validation. IBM X-Force ID:...

7.5CVSS

7AI Score

0.001EPSS

2021-09-23 05:15 PM
15
cve
cve

CVE-2021-38863

IBM Security Verify Bridge 1.0.5.0 stores user credentials in plain clear text which can be read by a locally authenticated user. IBM X-Force ID:...

5.5CVSS

5.3AI Score

0.0004EPSS

2021-09-23 05:15 PM
24
cve
cve

CVE-2021-20435

IBM Security Verify Bridge 1.0.5.0 does not properly validate a certificate which could allow a local attacker to obtain sensitive information that could aid in further attacks against the system. IBM X-Force ID:...

5.5CVSS

5.2AI Score

0.0004EPSS

2021-09-23 05:15 PM
20
cve
cve

CVE-2021-20434

IBM Security Verify Bridge 1.0.5.0 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID:...

4.4CVSS

4.6AI Score

0.0004EPSS

2021-09-23 05:15 PM
16
cve
cve

CVE-2021-36076

Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.8AI Score

0.001EPSS

2021-09-01 03:15 PM
25
cve
cve

CVE-2021-36077

Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious SVG file, potentially resulting in local application denial of service in the context of the current user. User interaction is required to exploit this...

5.5CVSS

5.8AI Score

0.001EPSS

2021-09-01 03:15 PM
26
cve
cve

CVE-2021-36078

Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.8AI Score

0.001EPSS

2021-09-01 03:15 PM
29
cve
cve

CVE-2021-39816

Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.8AI Score

0.001EPSS

2021-09-01 03:15 PM
24
cve
cve

CVE-2021-36079

Adobe Bridge version 11.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .SGI file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user.....

7.8CVSS

7.4AI Score

0.003EPSS

2021-09-01 03:15 PM
31
cve
cve

CVE-2021-39817

Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.8AI Score

0.001EPSS

2021-09-01 03:15 PM
24
cve
cve

CVE-2021-36074

Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of arbitrary memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim...

3.3CVSS

3.5AI Score

0.001EPSS

2021-09-01 03:15 PM
24
cve
cve

CVE-2021-36075

Adobe Bridge version 11.1 (and earlier) is affected by a Buffer Overflow vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.7AI Score

0.003EPSS

2021-09-01 03:15 PM
26
cve
cve

CVE-2021-36059

Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this...

7.8CVSS

7.8AI Score

0.001EPSS

2021-09-01 03:15 PM
24
Total number of security vulnerabilities226