CVE-2024-47425
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2024-47425 is a newly disclosed vulnerability affecting Adobe Framemaker versions 2020.6 and 2022.4, and potentially earlier releases. This issue involves an Integer Underflow vulnerability, where values are not properly checked for wrapping around the minimum limit, leading to unintended behavior. The consequence of this security flaw is arbitrary code execution, allowing attackers to run malicious code on the affected system. However, it's important to note that exploitation of this vulnerability requires user interaction – a victim must open a specifically crafted malicious file to be susceptible to an attack.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe FrameMaker
Affected Vendors
- Adobe