CVE-2024-47425

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 9, 2024
Updated: Oct 18, 2024
CWE ID 191

Summary

CVE-2024-47425 is a newly disclosed vulnerability affecting Adobe Framemaker versions 2020.6 and 2022.4, and potentially earlier releases. This issue involves an Integer Underflow vulnerability, where values are not properly checked for wrapping around the minimum limit, leading to unintended behavior. The consequence of this security flaw is arbitrary code execution, allowing attackers to run malicious code on the affected system. However, it's important to note that exploitation of this vulnerability requires user interaction – a victim must open a specifically crafted malicious file to be susceptible to an attack.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share