Show plain JSON{"dataType": "CVE_RECORD", "containers": {"adp": [{"title": "CISA ADP Vulnrichment", "metrics": [{"other": {"type": "ssvc", "content": {"id": "CVE-2024-39425", "role": "CISA Coordinator", "options": [{"Exploitation": "none"}, {"Automatable": "no"}, {"Technical Impact": "total"}], "version": "2.0.3", "timestamp": "2024-08-14T15:53:58.082264Z"}}}], "affected": [{"cpes": ["cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:*:windows:*:*"], "vendor": "adobe", "product": "acrobat_dc", "versions": [{"status": "affected", "version": "0", "versionType": "semver", "lessThanOrEqual": "24.002.20991"}], "defaultStatus": "affected"}, {"cpes": ["cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:*:macos:*:*"], "vendor": "adobe", "product": "acrobat_dc", "versions": [{"status": "affected", "version": "0", "versionType": "semver", "lessThanOrEqual": "24.002.20964"}], "defaultStatus": "affected"}, {"cpes": ["cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*"], "vendor": "adobe", "product": "acrobat", "versions": [{"status": "affected", "version": "0", "versionType": "custom", "lessThanOrEqual": "24.001.30123"}], "defaultStatus": "affected"}, {"cpes": ["cpe:2.3:a:adobe:acrobat:*:*:*:*:*:windows:*:*"], "vendor": "adobe", "product": "acrobat", "versions": [{"status": "affected", "version": "0", "versionType": "semver", "lessThanOrEqual": "24.001.30123"}, {"status": "affected", "version": "20.0", "versionType": "semver", "lessThanOrEqual": "20.005.30636"}], "defaultStatus": "affected"}, {"cpes": ["cpe:2.3:a:adobe:acrobat:*:*:*:*:*:macos:*:*"], "vendor": "adobe", "product": "acrobat", "versions": [{"status": "affected", "version": "0", "versionType": "semver", "lessThanOrEqual": "24.001.30123"}, {"status": "affected", "version": "20.0", "versionType": "semver", "lessThanOrEqual": "20.005.30635"}], "defaultStatus": "affected"}, {"cpes": ["cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:windows:*:*"], "vendor": "adobe", "product": "acrobat_reader", "versions": [{"status": "affected", "version": "0", "versionType": "custom", "lessThanOrEqual": "20.005.30636"}], "defaultStatus": "affected"}, {"cpes": ["cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:macos:*:*"], "vendor": "adobe", "product": "acrobat_reader", "versions": [{"status": "affected", "version": "0", "versionType": "custom", "lessThanOrEqual": "20.005.30635"}], "defaultStatus": "affected"}, {"cpes": ["cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:macos:*:*"], "vendor": "adobe", "product": "acrobat_reader_dc", "versions": [{"status": "affected", "version": "0", "versionType": "semver", "lessThanOrEqual": "24.002.20964"}], "defaultStatus": "affected"}, {"cpes": ["cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:windows:*:*"], "vendor": "adobe", "product": "acrobat_reader_dc", "versions": [{"status": "affected", "version": "0", "versionType": "semver", "lessThanOrEqual": "24.002.20991"}], "defaultStatus": "affected"}], "providerMetadata": {"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP", "dateUpdated": "2024-08-14T15:55:55.391Z"}}], "cna": {"title": "Security vulnerability in AdobeARMHelper", "source": {"discovery": "EXTERNAL"}, "metrics": [{"format": "CVSS", "cvssV3_1": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7, "attackVector": "LOCAL", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "modifiedScope": "NOT_DEFINED", "temporalScore": 7, "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "HIGH", "remediationLevel": "NOT_DEFINED", "reportConfidence": "NOT_DEFINED", "temporalSeverity": "HIGH", "availabilityImpact": "HIGH", "environmentalScore": 7, "privilegesRequired": "LOW", "exploitCodeMaturity": "NOT_DEFINED", "integrityRequirement": "NOT_DEFINED", "modifiedAttackVector": "LOCAL", "confidentialityImpact": "HIGH", "environmentalSeverity": "HIGH", "availabilityRequirement": "NOT_DEFINED", "modifiedIntegrityImpact": "HIGH", "modifiedUserInteraction": "NONE", "modifiedAttackComplexity": "HIGH", "confidentialityRequirement": "NOT_DEFINED", "modifiedAvailabilityImpact": "HIGH", "modifiedPrivilegesRequired": "LOW", "modifiedConfidentialityImpact": "HIGH"}, "scenarios": [{"lang": "en", "value": "GENERAL"}]}], "affected": [{"vendor": "Adobe", "product": "Acrobat Reader", "versions": [{"status": "affected", "version": "0", "versionType": "semver", "lessThanOrEqual": "24.001.30123"}], "defaultStatus": "affected"}], "datePublic": "2024-08-13T17:00:00.000Z", "references": [{"url": "https://helpx.adobe.com/security/products/acrobat/apsb24-57.html", "tags": ["vendor-advisory"]}], "descriptions": [{"lang": "en", "value": "Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could lead to privilege escalation. Exploitation of this issue require local low-privilege access to the affected system and attack complexity is high."}], "problemTypes": [{"descriptions": [{"lang": "en", "type": "CWE", "cweId": "CWE-367", "description": "Time-of-check Time-of-use (TOCTOU) Race Condition (CWE-367)"}]}], "providerMetadata": {"orgId": "078d4453-3bcd-4900-85e6-15281da43538", "shortName": "adobe", "dateUpdated": "2024-08-14T15:07:23.644Z"}}}, "cveMetadata": {"cveId": "CVE-2024-39425", "state": "PUBLISHED", "dateUpdated": "2024-08-15T03:55:56.990Z", "dateReserved": "2024-06-24T20:32:06.595Z", "assignerOrgId": "078d4453-3bcd-4900-85e6-15281da43538", "datePublished": "2024-08-14T15:07:23.644Z", "assignerShortName": "adobe"}, "dataVersion": "5.1"}