CVE-2012-2023

Severity
10.0CRITICAL
EPSS
13.4%
top 5.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 9
Latest updateMar 12

Description

Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-0780, CVE-2012-2024, CVE-2012-2025, and CVE-2012-2026.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages2 packages

NVDadobe/illustrator13 versions+12

Patches

🔴Vulnerability Details

3
GHSA
ginuerzh/gost vulnerable to Timing Attack2023-05-22
GHSA
GHSA-5c6j-76f2-jq69: Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a di2022-05-17
CVEList
CVE-2012-2023: Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a di2012-05-09

🕵️Threat Intelligence

2
Bleepingcomputer
Microsoft patches Windows Kernel zero-day exploited since 20232025-03-12
Threat Intel
Opal Sleet
CVE-2012-2023 (CRITICAL CVSS 10) | Adobe Illustrator before CS6 allows | cvebase.io