CVE-2024-47422
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Oct 9, 2024
Updated: Oct 18, 2024
CWE ID 426
Summary
CVE-2024-47422 is a newly disclosed vulnerability affecting Adobe Framemaker versions 2020.6 and earlier, including 2022.4. This issue is classified as an Untrusted Search Path vulnerability, which means an attacker can insert malicious paths into the search directories, potentially leading to arbitrary code execution. By exploiting this vulnerability, an attacker could gain the ability to execute code in the context of the current user, posing a significant security risk. Successful exploitation requires user interaction.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe FrameMaker
Affected Vendors
- Adobe