Adobe Framemaker versions 2020.6, 2022.4 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution. An attacker could exploit this vulnerability by uploading a malicious file which can be automatically processed or executed by the system. Exploitation of this issue requires user interaction.
Metrics
Affected Vendors & Products
References
History
Fri, 18 Oct 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Microsoft
Microsoft windows |
|
CPEs | cpe:2.3:a:adobe:framemaker:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Microsoft
Microsoft windows |
Wed, 09 Oct 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Adobe
Adobe framemaker |
|
CPEs | cpe:2.3:a:adobe:framemaker:-:*:*:*:*:*:*:* | |
Vendors & Products |
Adobe
Adobe framemaker |
|
Metrics |
ssvc
|
Wed, 09 Oct 2024 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Adobe Framemaker versions 2020.6, 2022.4 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution. An attacker could exploit this vulnerability by uploading a malicious file which can be automatically processed or executed by the system. Exploitation of this issue requires user interaction. | |
Title | Adobe Framemaker | Unrestricted Upload of File with Dangerous Type (CWE-434) | |
Weaknesses | CWE-434 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2024-10-09T14:29:34.316Z
Updated: 2024-10-09T15:55:59.273Z
Reserved: 2024-09-24T17:40:22.369Z
Link: CVE-2024-47423
Vulnrichment
Updated: 2024-10-09T15:55:53.660Z
NVD
Status : Analyzed
Published: 2024-10-09T15:15:14.393
Modified: 2024-10-18T14:15:01.977
Link: CVE-2024-47423
Redhat
No data.