CVE-2024-47422

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 9, 2024
Updated: Oct 18, 2024
CWE ID 426

Summary

CVE-2024-47422 is a newly disclosed vulnerability affecting Adobe Framemaker versions 2020.6 and earlier, including 2022.4. This issue is classified as an Untrusted Search Path vulnerability, which means an attacker can insert malicious paths into the search directories, potentially leading to arbitrary code execution. By exploiting this vulnerability, an attacker could gain the ability to execute code in the context of the current user, posing a significant security risk. Successful exploitation requires user interaction.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share