CVE-2024-47423
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Oct 9, 2024
Updated: Oct 18, 2024
CWE ID 434
Summary
CVE-2024-47423 is a newly disclosed vulnerability affecting Adobe Framemaker versions 2020.6 and 2022.4, and potentially earlier releases. This issue involves an Unrestricted Upload of File with Dangerous Type, which can lead to arbitrary code execution. An attacker could exploit this vulnerability by uploading a malicious file that can be automatically processed or executed by the system. Successful exploitation necessitates user interaction.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe FrameMaker
Affected Vendors
- Adobe