CVE-2021-39827
MEDIUMAdobe Digital Editions <4.5.11.187646 - Arbitrary File Write
Title source: llmDescription
Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary file write vulnerability in the Digital Editions installer. An authenticated attacker could leverage this vulnerability to write an arbitrary file to the system. User interaction is required before product installation to abuse this vulnerability.
References (1)
Core 1
Core References
Patch, Vendor Advisory x_refsource_misc
https://helpx.adobe.com/security/products/Digital-Editions/apsb21-80.html
Scores
CVSS v3
6.5
EPSS
0.0150
EPSS Percentile
71.5%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-379
Status
published
Products (1)
adobe/digital_editions
< 4.5.11.187646
Published
Sep 27, 2021
Tracked Since
Feb 18, 2026