VYPR

Indesign

by Adobe Inc.

CVEs (204)

  • CVE-2021-45059LowJan 13, 2022
    risk 0.22cvss 3.3epss 0.01

    Adobe InDesign version 16.4 (and earlier) is affected by a use-after-free vulnerability in the processing of a JPEG2000 file that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this…

  • CVE-2010-2321Jun 18, 2010
    risk 0.05cvss epss 0.21

    Buffer overflow in Adobe InDesign CS3 10.0 allows user-assisted remote attackers to execute arbitrary code via a crafted .indd file.

  • CVE-2010-3153Aug 27, 2010
    risk 0.04cvss epss 0.14

    Untrusted search path vulnerability in Adobe InDesign CS4 6.0, InDesign CS5 7.0.2 and earlier, Adobe InDesign Server CS5 7.0.2 and earlier, and Adobe InCopy CS5 7.0.2 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL…

  • CVE-2006-0525Feb 2, 2006
    risk 0.00cvss epss 0.01

    Multiple Adobe products, including (1) Photoshop CS2, (2) Illustrator CS2, and (3) Adobe Help Center, install a large number of .EXE and .DLL files with write-access permission for the Everyone group, which allows local users to gain privileges via Trojan horse programs.

Page 11 of 11

VYPR — Vulnerability Intelligence