VYPR
High severity7.8NVD Advisory· Published Aug 14, 2024· Updated Jun 17, 2026

CVE-2024-41865

CVE-2024-41865

Description

Dimension versions 3.4.11 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrary code execution. An attacker could exploit this vulnerability by inserting a malicious file into the search path, which the application might execute instead of the legitimate file. This could occur if the application uses a search path to locate executables or libraries. Exploitation of this issue requires user interaction.

Affected products

3
  • cpe:2.3:a:adobe:dimension:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:adobe:dimension:*:*:*:*:*:*:*:*range: <=3.4.11
    • (no CPE)range: <=3.4.11
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.