CVE-2012-2026

Severity
10.0CRITICAL
EPSS
13.4%
top 5.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 9
Latest updateApr 13

Description

Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-0780, CVE-2012-2023, CVE-2012-2024, and CVE-2012-2025.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages2 packages

NVDadobe/illustrator13 versions+12

Patches

🔴Vulnerability Details

2
GHSA
GHSA-3wqx-wh6r-cf85: Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a di2022-05-17
CVEList
CVE-2012-2026: Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a di2012-05-09

📋Vendor Advisories

4
CISA
Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability2026-04-13
Microsoft
MapUrlToZone Security Feature Bypass Vulnerability2026-03-10
Apache
Apache guacamole: CVE-2012-4415
Apache
Apache httpd: CVE-2012-0883
CVE-2012-2026 (CRITICAL CVSS 10) | Adobe Illustrator before CS6 allows | cvebase.io