VYPR
Medium severity6.5NVD Advisory· Published Apr 16, 2021· Updated Jun 17, 2026

CVE-2020-9681

CVE-2020-9681

Description

Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An authenticated attacker could exploit this to rewrite the file of the administrator, which may lead to elevated permissions. Exploitation of this issue requires user interaction.

Affected products

3
  • cpe:2.3:a:adobe:genuine_service:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:adobe:genuine_service:*:*:*:*:*:*:*:*range: <=6.6
    • (no CPE)range: <=6.6
  • Adobe/GoCartv5
    Range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.