cbcvebase.
CVE-2023-21622
published 2023-02-17

CVE-2023-21622: FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution…

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected

5 ranges
VendorProductVersion rangeFixed in
adobeframemaker<= 2020.0.4
adobeframemaker
adobeframemakerunspecified – 2020u4
craftcmscms>= 3.0.0 < 3.9.63.9.6
craftcmscms>= 4.0.0-RC1 < 4.5.114.5.11