cbcvebase.

Adobe Bridge vulnerabilities

146 known vulnerabilities affecting adobe/bridge.

Total CVEs
146
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH108MEDIUM25LOW10

Vulnerabilities

Page 6 of 8
CVE-2022-35706P3HIGHCVSS 7.8≥ 11.1, < 11.1.4≥ 12.0, < 12.0.3+1 more2022-09-19
CVE-2022-35706 [HIGH] CWE-122 CVE-2022-35706: Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based Buff Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-35704P3HIGHCVSS 7.8≥ 11.1, < 11.1.4≥ 12.0, < 12.0.3+1 more2022-09-19
CVE-2022-35704 [HIGH] CWE-416 CVE-2022-35704: Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Use After Free Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-42722P3HIGHCVSS 7.8≤ 11.1.1≥ unspecified, ≤ 11.1.12022-03-16
CVE-2021-42722 [HIGH] CWE-125 CVE-2021-42722: Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when pa Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in t
nvdosv
CVE-2022-35708P3HIGHCVSS 7.8≥ 11.1, < 11.1.4≥ 12.0, < 12.0.3+1 more2022-09-19
CVE-2022-35708 [HIGH] CWE-122 CVE-2022-35708: Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based Buff Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-35703P3HIGHCVSS 7.8≥ 11.1, < 11.1.4≥ 12.0, < 12.0.3+1 more2022-09-19
CVE-2022-35703 [HIGH] CWE-125 CVE-2022-35703: Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by an out-of-bounds Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requi
nvd
CVE-2022-35702P3HIGHCVSS 7.8≥ 11.1, < 11.1.4≥ 12.0, < 12.0.3+1 more2022-09-19
CVE-2022-35702 [HIGH] CWE-125 CVE-2022-35702: Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by an out-of-bounds Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requi
nvd
CVE-2022-35707P3HIGHCVSS 7.8≥ 11.1, < 11.1.4≥ 12.0, < 12.0.3+1 more2022-09-19
CVE-2022-35707 [HIGH] CWE-125 CVE-2022-35707: Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by an out-of-bounds Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requi
nvd
CVE-2022-35705P3HIGHCVSS 7.8≥ 11.1, < 11.1.4≥ 12.0, < 12.0.3+1 more2022-09-19
CVE-2022-35705 [HIGH] CWE-125 CVE-2022-35705: Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by an out-of-bounds Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requi
nvd
CVE-2023-22228P3HIGHCVSS 7.8≥ 12.0.0, < 12.0.4≥ 13.0.0, < 13.0.2+1 more2023-02-17
CVE-2023-22228 [HIGH] CWE-20 CVE-2023-22228: Adobe Bridge versions 12.0.3 (and earlier) and 13.0.1 (and earlier) are affected by an Improper Inpu Adobe Bridge versions 12.0.3 (and earlier) and 13.0.1 (and earlier) are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2020-9568P3HIGHCVSS 7.8≤ 10.0.12020-06-26
CVE-2020-9568 [HIGH] CWE-787 CVE-2020-9568: Adobe Bridge versions 10.0.1 and earlier version have a memory corruption vulnerability. Successful Adobe Bridge versions 10.0.1 and earlier version have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution .
nvd
CVE-2021-45051P4MEDIUMCVSS 5.5fixed in 11.1.3v12.0+1 more2022-01-14
CVE-2021-45051 [MEDIUM] CWE-416 CVE-2021-45051: Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an use-afte Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an use-after-free vulnerability in the processing of Format event actions that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in
nvd
CVE-2021-45052P4MEDIUMCVSS 5.5fixed in 11.1.3v12.0+1 more2022-01-14
CVE-2021-45052 [MEDIUM] CWE-125 CVE-2021-45052: Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-b Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious T
nvd
CVE-2022-28850P4MEDIUMCVSS 5.5≤ 12.0.1≥ unspecified, ≤ 12.0.12022-06-15
CVE-2022-28850 [MEDIUM] CWE-125 CVE-2022-28850: Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds read vulnerabilit Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2007-1279P4HIGHCVSS 7.2v1.0.32007-04-11
CVE-2007-1279 [HIGH] CVE-2007-1279: Unspecified vulnerability in the installer for Adobe Bridge 1.0.3 update for Apple OS X, when patchi Unspecified vulnerability in the installer for Adobe Bridge 1.0.3 update for Apple OS X, when patching with desktop management tools, allows local users to gain privileges via unspecified vectors during installation of the update by a different user who has administrative privileges.
nvd
CVE-2024-39387P4MEDIUMCVSS 5.5fixed in 13.0.9≥ 14.0.0, < 14.1.2+1 more2024-08-14
CVE-2024-39387 [MEDIUM] CWE-125 CVE-2024-39387: Bridge versions 13.0.8, 14.1.1 and earlier are affected by an out-of-bounds read vulnerability that Bridge versions 13.0.8, 14.1.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-38217P4MEDIUMCVSS 5.5≤ 12.0.4≥ 13.0.0, < 13.0.42023-10-11
CVE-2023-38217 [MEDIUM] CWE-125 CVE-2023-38217: Adobe Bridge versions 12.0.4 (and earlier) and 13.0.3 (and earlier) are affected by an Out-of-bounds Adobe Bridge versions 12.0.4 (and earlier) and 13.0.3 (and earlier) are affected by an Out-of-bounds Read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-20757P4MEDIUMCVSS 5.5fixed in 13.0.6≥ 14.0.0, < 14.0.2+1 more2024-03-18
CVE-2024-20757 [MEDIUM] CWE-125 CVE-2024-20757: Bridge versions 13.0.5, 14.0.1 and earlier are affected by an out-of-bounds read vulnerability that Bridge versions 13.0.5, 14.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-34140P4MEDIUMCVSS 5.5fixed in 14.0.4≤ 14.12024-07-09
CVE-2024-34140 [MEDIUM] CWE-125 CVE-2024-34140: Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an out-of-bounds read vulnerability Bridge versions 14.0.4, 13.0.7, 14.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-20771P4MEDIUMCVSS 5.5fixed in 13.0.7≥ 14.0.0, < 14.0.3+1 more2024-04-11
CVE-2024-20771 [MEDIUM] CWE-125 CVE-2024-20771: Bridge versions 13.0.6, 14.0.2 and earlier are affected by an out-of-bounds read vulnerability that Bridge versions 13.0.6, 14.0.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-45147P4MEDIUMCVSS 5.5≤ 13.0.9≥ 14.0.0, < 14.1.32024-11-12
CVE-2024-45147 [MEDIUM] CWE-125 CVE-2024-45147: Bridge versions 13.0.9, 14.1.2 and earlier are affected by an out-of-bounds read vulnerability that Bridge versions 13.0.9, 14.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
Adobe Bridge vulnerabilities | cvebase