ZeroHour

CVE-2020-24415

CVSS 3.1
7.8 high
EPSS
3%p85
Published
()
Modified
Description

Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file. This could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.

Vendors
adobe
Products
illustrator
Weakness
CWE-788, CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news