Vulnerability index

Browse CVEs

163 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Experience Manager MEDIUM 6.5
CVE-2021-43762

AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a dispatcher bypass vulnerability that could be abused to evade…

Fix: after 6.5.10.0
Fix from $1,600 2022-01-13
Creative Cloud Desktop Application HIGH 7.8
CVE-2021-28547

Adobe Creative Cloud Desktop Application for macOS version 5.3 (and earlier) is affected by a privilege escalation vulnerability that could allow a n…

Fix: after 5.3
Fix from $1,950 2021-09-29
Experience Manager MEDIUM 6.5
CVE-2021-40712

Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a improper input validation vulnerability via the path parameter. An authentica…

Fix: after 6.5.9.0
Fix from $1,600 2021-09-27
Adobe Commerce HIGH 7.5
CVE-2021-36044

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 7.2
CVE-2021-36040

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 7.2
CVE-2021-36041

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 7.2
CVE-2021-36042

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 8.8
CVE-2021-36032

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 7.5
CVE-2021-36030

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 7.2
CVE-2021-36025

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 7.2
CVE-2021-36034

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce HIGH 7.2
CVE-2021-36035

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,950 2021-09-01
Adobe Commerce MEDIUM 6.5
CVE-2021-36038

Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil…

Fix: after 2.4.2
Fix from $1,600 2021-09-01
Connect HIGH 7.8
CVE-2021-21085

Adobe Connect version 11.0.7 (and earlier) is affected by an Input Validation vulnerability in the export feature. An attacker could exploit this vul…

Fix: after 11.0.7
Fix from $1,950 2021-03-12
Creative Cloud Desktop Application HIGH 7.8
CVE-2021-21069

Adobe Creative Cloud Desktop Application version 5.3 (and earlier) is affected by a local privilege escalation vulnerability that could allow an atta…

Fix: after 5.3
Fix from $1,950 2021-03-12
Acrobat MEDIUM 6.5
CVE-2020-29075EPSS 8%

Acrobat Reader DC versions 2020.013.20066 (and earlier), 2020.001.30010 (and earlier) and 2017.011.30180 (and earlier) are affected by an information…

Fix: after 20.013.20066
Fix from $1,600 2021-02-23
Acrobat HIGH 7.8
CVE-2020-24432EPSS 11%

Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) and Adobe Acrobat Pro DC 2017.…

Fix: after 20.012.20048
Fix from $1,950 2020-11-05
Experience Manager MEDIUM 6.1
CVE-2020-9743

AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by an HTML injection vulnerabil…

Fix: after 6.5.5.0
Fix from $1,600 2020-09-10
Coldfusion MEDIUM 6.5
CVE-2020-3767

ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an insufficient input validation vulnerability. Successful exploitation could lead to a…

Mitigation only
Fix from $1,600 2020-06-26
Creative Cloud CRITICAL 9.8
CVE-2019-7959EPSS 7%

Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnerability. Successful exploitati…

Fix: after 4.6.1
Fix from $2,300 2019-08-16
Campaign HIGH 7.5
CVE-2019-7843

Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Insufficient input validation vulnerability. Successful exploitation could l…

Fix: after 18.10.5.8984
Fix from $1,950 2019-07-18
Coldfusion HIGH 7.5
CVE-2018-15960EPSS 6%

Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a use of a component with a known v…

No fix yet
Fix from $1,950 2018-09-25
Experience Manager MEDIUM 5.3
CVE-2018-12807

Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have an input validation bypass vulnerability. Successful exploitation could lead to un…

Fix: after 6.2.1.15
Fix from $1,600 2018-08-29
Push Notifications HIGH 8.8
CVE-2018-4943EPSS 7%

Adobe PhoneGap Push Plugin versions 1.8.0 and earlier have an exploitable Same-Origin Method Execution vulnerability. Successful exploitation could l…

Fix: after 1.8.0
Fix from $1,950 2018-05-19
Creative Cloud HIGH 7.8
CVE-2018-4992

Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper input validation vulnerability. Successful explo…

Fix: after 4.4.1.298
Fix from $1,950 2018-05-19
Captivate CRITICAL 9.8
CVE-2017-3098EPSS 7%

Adobe Captivate versions 9 and earlier have a remote code execution vulnerability in the quiz reporting feature that could be abused to read and writ…

Fix: after 9.0
Fix from $2,300 2017-06-20
Campaign CRITICAL 9.1
CVE-2017-2989

Adobe Campaign versions Build 8770 and earlier have an input validation bypass that could be exploited to read, write, or delete data from the Campai…

Fix: after 6.11
Fix from $2,300 2017-04-12
Acrobat MEDIUM 5.5
CVE-2017-2947EPSS 7%

Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have a security bypass vulnerability when manip…

Fix: after 15.020.20042
Fix from $1,600 2017-01-11
Brackets CRITICAL 9.8
CVE-2016-4165

The extension manager in Adobe Brackets before 1.7 allows attackers to have an unspecified impact via invalid input.

Fix: after 1.6
Fix from $2,300 2016-06-16
Coldfusion MEDIUM 5.9
CVE-2016-1115

Adobe ColdFusion 10 before Update 19, 11 before Update 8, and 2016 before Update 1 mishandles wildcards in name fields of X.509 certificates, which m…

Mitigation only
Fix from $1,600 2016-05-11