Impact
Uncontrolled Resource Consumption in Adobe Content Credentials allows an attacker to exhaust system resources not require user interaction and is characterized by CWE-400. Attackers can trigger excessive memory, CPU, or disk usage, leading to degraded application performance or complete unavailability.
Affected Systems
Adobe Content Credentials Command‑Line Tool, Adobe Content Credentials JS SDK, and Adobe Content Credentials Rust SDK are impacted. No specific versions are listed, so all.
Risk and Exploitability
The CVSS score moderate severity. The EPSS score of less than 1% shows a very low probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog. The attack vector is inferred to be remote, likely through interfaces exposed by the SDKs or command‑line tool, and it can be carried out without any user interaction, meaning an external threat actor could trigger the denial‑of‑service on the target system.
OpenCVE Enrichment