CVE-2021-28623

MEDIUM

Adobe Premiere Elements < 5.3 - Unauthenticated Privilege Escalation via Insecure Temporary File Creation

Title source: llm
STIX 2.1

Description

Adobe Premiere Elements version 5.2 (and earlier) is affected by an insecure temporary file creation vulnerability. An unauthenticated attacker could leverage this vulnerability to call functions against the installer to perform high privileged actions. Exploitation of this issue does not require user interaction.

References (1)

Core 1
Core References

Scores

CVSS v3 5.5
EPSS 0.0048
EPSS Percentile 37.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-379 CWE-668
Status published
Products (1)
adobe/premiere_elements < 5.3
Published Jun 28, 2021
Tracked Since Feb 18, 2026