Adobe Creative Cloud Desktop Application version 5.3 (and earlier) is affected by a local privilege escalation vulnerability that could allow an attacker to call functions against the installer to perform high privileged actions. Exploitation of this issue does not require user interaction.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
https://helpx.adobe.com/security/products/creative-cloud/apsb21-18.html | patch vendor advisory |
https://www.zerodayinitiative.com/advisories/ZDI-21-281/ | third party advisory |