helpx.adobe.com
https://helpx.adobe.com/security/products/framemaker/apsb23-06.html CVE-2023-21621
HIGH
Adobe FrameMaker Improper Input Validation Remote Code Execution Vulnerability
Record summary
CVE-2023-21621 has a selected CVSS score of 7.8 (high).
Description
FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
FrameMakerBrowse Adobe / FrameMaker | CVE List | Through 2020u4 | affected |
| Through 2022 | affected | ||
| Through None | affected |
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-21621