CVE-2021-21100

HIGH

Adobe Digital Editions <4.5.11.187245 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Adobe Digital Editions version 4.5.11.187245 (and earlier) is affected by a Privilege Escalation vulnerability during installation. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary file system write in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0172
EPSS Percentile 75.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-379
Status published
Products (1)
adobe/digital_editions < 4.5.11.187245
Published Apr 15, 2021
Tracked Since Feb 18, 2026