CVE-2018-4873

HIGH

Adobe Creative Cloud < 4.4.1.298 - Unquoted Search Path Privilege Escalation

Title source: llm
STIX 2.1

Description

Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Unquoted Search Path vulnerability. Successful exploitation could lead to local privilege escalation.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/104103
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1040860

Scores

CVSS v3 7.8
EPSS 0.0129
EPSS Percentile 66.3%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-428
Status published
Products (1)
adobe/creative_cloud < 4.4.1.298
Published May 19, 2018
Tracked Since Feb 18, 2026