CVE-2019-8247
published 2019-11-14CVE-2019-8247: Adobe Illustrator CC versions 23.1 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution .
PriorityP344critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
3.98%
89.3th percentile
Adobe Illustrator CC versions 23.1 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution .
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | adobe_illustrator_cc | — | — |
| adobe | illustrator_cc | < 24.0 | 24.0 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Fortinet
Fortinet Security Researchers Discover Multiple Vulnerabilities in Adobe and Cisco Products
blogs_fortinet·2019-11-15·CVSS 9.8
[CRITICAL] Fortinet Security Researchers Discover Multiple Vulnerabilities in Adobe and Cisco Products
FORTIGUARD LABS THREAT RESEARCH
Fortinet Security Researchers Discover Multiple Vulnerabilities in Adobe and Cisco Products
By Peixue Li | November 15, 2019
This past Patch Tuesday, November 12th, Adobe announced a number of Security Updates for Adobe Illustrator CC. They included two critical vulnerabilities that were originally discovered by Fortinet Threat Researcher Kushal Arvind Shah.
The week before, on Wednesday, November 6th, a number of Security Updates were also released by Cisco Systems. They included five high risk vulnerabilities for their Cisco Webex Network Recording Player and Webex Player tools. These vulnerabilities were also discovered by Kushal Arvind Shah as well as Fortinet security researcher Yici Zhang.
All of these vulnerabilities have now been patched. More in
Fortinet
November Patch Tuesday
blogs_fortinet·2019-11-12·CVSS 7.8
[HIGH] November Patch Tuesday
FORTIGUARD LABS THREAT RESEARCH
November Patch Tuesday
By Jeannette Jarvis | November 12, 2019
Vendors unleashed a virtual torrent of patches and updates for November’s Patch Tuesday. We strongly recommend that you take the time to scan the sites of the various vendors and manufacturers you rely on for patches and updates to your business-critical software and systems. Here are a few patches as well as some updates from some of the larger developers:
Microsoft
Microsoft released a wealth of security updates for November's Patch Tuesday. Overall, there were 73 updates and two advisories. Fourteen of the security updates and one of the advisories were rated as critical, and one of those critical vulnerabilities, CVE-2019-1429 – a scripting engine memory corruption vulnerability, is curre
2019-11-14
Published