CVE-2020-9551
published 2020-03-25CVE-2020-9551: Adobe Bridge versions 10.0 have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.
PriorityP339high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
2.85%
85.1th percentile
Adobe Bridge versions 10.0 have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | adobe_bridge | — | — |
| adobe | bridge | — | — |
| msrc | microsoft_exchange_server_2013_cumulative_update_23 | — | — |
| msrc | microsoft_exchange_server_2016_cumulative_update_17 | — | — |
| msrc | microsoft_exchange_server_2016_cumulative_update_18 | — | — |
| msrc | microsoft_exchange_server_2019_cumulative_update_6 | — | — |
| msrc | microsoft_exchange_server_2019_cumulative_update_7 | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_msrc8.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vrgv-wg79-j6vf: Adobe Bridge versions 10
ghsa_unreviewed·2022-05-24
CVE-2020-9551 [MEDIUM] GHSA-vrgv-wg79-j6vf: Adobe Bridge versions 10
Adobe Bridge versions 10.0 have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.
Microsoft
Microsoft Exchange Server Remote Code Execution Vulnerability
vendor_msrc·2020-11-10·CVSS 8.5
CVE-2020-17084 [HIGH] Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server: Microsoft Exchange Server
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Remote Code Execution
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://www.microsoft.com/download/details.aspx?familyid=8f6aa8a7-c4ff-49cc-b949-beda01d3653a
Reference: https://support.microsoft.com/help/4588741
Reference: https://www.microsoft.com/download/details.aspx?familyid=a8b61f90-8e24-4b5b-9551-195bcaa450e5
Reference: https://www.microsoft.com/download/details.aspx?familyid=59e9fa1a-ce45-46bf-974d-8e8468a4fd60
Reference: https://www.microsoft.com/download/details.aspx?familyid=d
Microsoft
Microsoft Exchange Server Remote Code Execution Vulnerability
vendor_msrc·2020-11-10·CVSS 5.5
CVE-2020-17083 [MEDIUM] Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server: Microsoft Exchange Server
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Remote Code Execution
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://www.microsoft.com/download/details.aspx?familyid=8f6aa8a7-c4ff-49cc-b949-beda01d3653a
Reference: https://support.microsoft.com/help/4588741
Reference: https://www.microsoft.com/download/details.aspx?familyid=a8b61f90-8e24-4b5b-9551-195bcaa450e5
Reference: https://www.microsoft.com/download/details.aspx?familyid=59e9fa1a-ce45-46bf-974d-8e8468a4fd60
Reference: https://www.microsoft.com/download/details.aspx?familyid=d
Microsoft
Microsoft Exchange Server Denial of Service Vulnerability
vendor_msrc·2020-11-10·CVSS 6.2
CVE-2020-17085 [MEDIUM] Microsoft Exchange Server Denial of Service Vulnerability
Microsoft Exchange Server Denial of Service Vulnerability
Microsoft Exchange Server: Microsoft Exchange Server
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Denial of Service
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://www.microsoft.com/download/details.aspx?familyid=8f6aa8a7-c4ff-49cc-b949-beda01d3653a
Reference: https://support.microsoft.com/help/4588741
Reference: https://www.microsoft.com/download/details.aspx?familyid=a8b61f90-8e24-4b5b-9551-195bcaa450e5
Reference: https://www.microsoft.com/download/details.aspx?familyid=59e9fa1a-ce45-46bf-974d-8e8468a4fd60
Reference: https://www.microsoft.com/download/details.aspx?familyid=db0cdd28-
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2020-03-25
Published