Medium severity4.3NVD Advisory· Published Jun 28, 2021· Updated Jun 17, 2026
CVE-2021-28579
CVE-2021-28579
Description
Adobe Connect version 11.2.1 (and earlier) is affected by an Improper access control vulnerability that can lead to the elevation of privileges. An attacker with 'Learner' permissions can leverage this scenario to access the list of event participants.
Affected products
3cpe:2.3:a:adobe:connect:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:adobe:connect:*:*:*:*:*:*:*:*range: <11.2.2
- (no CPE)range: <=11.2.1
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- helpx.adobe.com/security/products/connect/apsb21-36.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.