Vulnerability index

Browse CVEs

6,387 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Acrobat HIGH 8.8
CVE-2017-16390EPSS 9%

An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and ear…

Fix: after 17.012.20098
Fix from $1,950 2017-12-09
Acrobat HIGH 7.5
CVE-2017-16366EPSS 6%

An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and ear…

Fix: after 17.012.20098
Fix from $1,950 2017-12-09
Acrobat MEDIUM 6.5
CVE-2017-16369EPSS 7%

An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and ear…

Fix: after 17.012.20098
Fix from $1,600 2017-12-09
Connect CRITICAL 10.0
CVE-2017-11291EPSS 6%

An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A Server-Side Request Forgery (SSRF) vulnerability exists that could be abused t…

Fix: after 9.6.2
Fix from $2,300 2017-12-09
Acrobat CRITICAL 9.8
CVE-2017-11293EPSS 9%

An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and ear…

Fix: after 17.012.20098
Fix from $2,300 2017-12-09
Shockwave CRITICAL 9.8
CVE-2017-11294EPSS 9%

An issue was discovered in Adobe Shockwave 12.2.9.199 and earlier. An exploitable memory corruption vulnerability exists. Successful exploitation cou…

Fix: after 12.2.9.199
Fix from $2,300 2017-12-09
Dng Converter CRITICAL 9.8
CVE-2017-11295EPSS 6%

An issue was discovered in Adobe DNG Converter 9.12.1 and earlier versions. An exploitable memory corruption vulnerability exists. Successful exploit…

Fix: after 9.12.1
Fix from $2,300 2017-12-09
Indesign CRITICAL 9.8
CVE-2017-11302EPSS 6%

An issue was discovered in Adobe InDesign 12.1.0 and earlier versions. An exploitable memory corruption vulnerability exists. Successful exploitation…

Fix: after 12.1.0
Fix from $2,300 2017-12-09
Photoshop CRITICAL 9.8
CVE-2017-11303EPSS 8%

An issue was discovered in Adobe Photoshop 18.1.1 (2017.1.1) and earlier versions. An exploitable memory corruption vulnerability exists. Successful …

Fix: after 18.1.1
Fix from $2,300 2017-12-09
Photoshop CRITICAL 9.8
CVE-2017-11304EPSS 7%

An issue was discovered in Adobe Photoshop 18.1.1 (2017.1.1) and earlier versions. An exploitable use-after-free vulnerability exists. Successful exp…

Fix: after 18.1.1
Fix from $2,300 2017-12-09
Acrobat HIGH 8.8
CVE-2017-16360EPSS 9%

An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and ear…

Fix: after 17.012.20098
Fix from $1,950 2017-12-09
Acrobat MEDIUM 6.5
CVE-2017-16361EPSS 5%

An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and ear…

Fix: after 17.012.20098
Fix from $1,600 2017-12-09
Connect MEDIUM 6.1
CVE-2017-11287

An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A reflected cross-site scripting vulnerability exists that can result in informa…

Fix: after 9.6.2
Fix from $1,600 2017-12-09
Connect MEDIUM 6.1
CVE-2017-11288

An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A reflected cross-site scripting vulnerability exists that can result in informa…

Fix: after 9.6.2
Fix from $1,600 2017-12-09
Connect MEDIUM 6.1
CVE-2017-11289

An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A reflected cross-site scripting vulnerability exists that can result in informa…

Fix: after 9.6.2
Fix from $1,600 2017-12-09
Connect MEDIUM 6.1
CVE-2017-11290

An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A UI Redress (or Clickjacking) vulnerability exists. This issue has been resolve…

Fix: after 9.6.2
Fix from $1,600 2017-12-09
Experience Manager MEDIUM 6.1
CVE-2017-11296

An issue was discovered in Adobe Experience Manager 6.3, 6.2, 6.1, 6.0. A cross-site scripting vulnerability in Apache Sling Servlets Post 2.3.20 has…

Mitigation only
Fix from $1,600 2017-12-09
Digital Editions MEDIUM 5.5
CVE-2017-11273

An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. Adobe Digital Editions parses crafted XML files in an unsafe manner, wh…

Fix: after 4.5.6
Fix from $1,600 2017-12-09
Digital Editions MEDIUM 5.3
CVE-2017-11297

An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead…

Fix: after 4.5.6
Fix from $1,600 2017-12-09
Digital Editions MEDIUM 5.3
CVE-2017-11298

An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead…

Fix: after 4.5.6
Fix from $1,600 2017-12-09
Digital Editions MEDIUM 5.3
CVE-2017-11299

An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead…

Fix: after 4.5.6
Fix from $1,600 2017-12-09
Digital Editions MEDIUM 5.3
CVE-2017-11300

An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead…

Fix: after 4.5.6
Fix from $1,600 2017-12-09
Digital Editions MEDIUM 5.3
CVE-2017-11301

An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead…

Fix: after 4.5.6
Fix from $1,600 2017-12-09
Coldfusion CRITICAL 9.8
CVE-2017-11283EPSS 43%

Adobe ColdFusion has an Untrusted Data Deserialization vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 a…

Patch available
Fix from $2,300 2017-12-01
Coldfusion CRITICAL 9.8
CVE-2017-11284EPSS 43%

Adobe ColdFusion has an Untrusted Data Deserialization vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 a…

Patch available
Fix from $2,300 2017-12-01
Coldfusion HIGH 7.5
CVE-2017-11286EPSS 8%

Adobe ColdFusion has an XML external entity (XXE) injection vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update…

Patch available
Fix from $1,950 2017-12-01
Coldfusion MEDIUM 6.1
CVE-2017-11285

Adobe ColdFusion has a cross-site scripting (XSS) vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and ea…

Patch available
Fix from $1,600 2017-12-01
Robohelp MEDIUM 6.1
CVE-2017-3104

Adobe RoboHelp has a cross-site scripting (XSS) vulnerability. This affects versions before RH12.0.4.460 and RH2017 before RH2017.0.2.

Fix: 12.0.4.460 / 2017.0.1+
Fix from $1,600 2017-12-01
Robohelp MEDIUM 6.1
CVE-2017-3105

Adobe RoboHelp has an Open Redirect vulnerability. This affects versions before RH12.0.4.460 and RH2017 before RH2017.0.2.

Fix: 12.0.4.460 / 2017.0.1+
Fix from $1,600 2017-12-01
Experience Manager CRITICAL 9.8
CVE-2017-3108EPSS 9%

Adobe Experience Manager 6.2 and earlier has a malicious file execution vulnerability.

Fix: after 6.2
Fix from $2,300 2017-08-11