Impact
CAI Content Credentials suffers from an Improper Input Validation flaw that permits attackers to bypass security measures. Once a user visits a maliciously crafted URL or interacts with a compromised web page, the attacker can gain limited write access that would normally be prohibited by the system's security controls.
Affected Systems
Adobe Content Credentials Command‑Line Tool and Adobe Content Credentials Rust SDK are impacted. No specific version information is disclosed in this advisory.
Risk and Exploitability
The CVSS score of 4.3 indicates a moderate severity, but the exploit requires user interaction, reducing the likelihood of widespread usage. The EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, suggesting low to moderate risk for organizations using these components. Attackers must entice a victim into visiting a malicious URL or interacting with a compromised page to succeed.
OpenCVE Enrichment