Adobe Digital Editions vulnerabilities
71 known vulnerabilities affecting adobe/digital_editions.
Total CVEs
71
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL29HIGH28MEDIUM13LOW1
Vulnerabilities
Page 2 of 4
CVE-2017-3089P3CRITICALCVSS 9.8≤ 4.5.42017-06-20
CVE-2017-3089 [CRITICAL] CWE-119 CVE-2017-3089: Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerabilit
Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the PDF imaging model. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3096P3CRITICALCVSS 9.8≤ 4.5.42017-06-20
CVE-2017-3096 [CRITICAL] CWE-119 CVE-2017-3096: Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerabilit
Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the character code mapping module. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2016-4257P3CRITICALCVSS 9.8≤ 4.5.12016-09-16
CVE-2016-4257 [CRITICAL] CVE-2016-4257: Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4258, CVE-2016-4259, CVE-2016-4260, CVE-2016-4261, and CVE-2016-4262.
nvd
CVE-2016-4256P3CRITICALCVSS 9.8≤ 4.5.12016-09-16
CVE-2016-4256 [CRITICAL] CWE-119 CVE-2016-4256: Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4257, CVE-2016-4258, CVE-2016-4259, CVE-2016-4260, CVE-2016-4261, and CVE-2016-4262.
nvd
CVE-2016-4258P3CRITICALCVSS 9.8≤ 4.5.12016-09-16
CVE-2016-4258 [CRITICAL] CVE-2016-4258: Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4259, CVE-2016-4260, CVE-2016-4261, and CVE-2016-4262.
nvd
CVE-2016-4260P3CRITICALCVSS 9.8≤ 4.5.12016-09-16
CVE-2016-4260 [CRITICAL] CVE-2016-4260: Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4259, CVE-2016-4261, and CVE-2016-4262.
nvd
CVE-2016-4262P3CRITICALCVSS 9.8≤ 4.5.12016-09-16
CVE-2016-4262 [CRITICAL] CVE-2016-4262: Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4259, CVE-2016-4260, and CVE-2016-4261.
nvd
CVE-2016-4259P3CRITICALCVSS 9.8≤ 4.5.12016-09-16
CVE-2016-4259 [CRITICAL] CVE-2016-4259: Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4260, CVE-2016-4261, and CVE-2016-4262.
nvd
CVE-2016-4261P3CRITICALCVSS 9.8≤ 4.5.12016-09-16
CVE-2016-4261 [CRITICAL] CVE-2016-4261: Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4259, CVE-2016-4260, and CVE-2016-4262.
nvd
CVE-2021-39826P3HIGHCVSS 8.6≤ 4.5.11.187646≥ unspecified, ≤ 4.5.11.1876462021-09-27
CVE-2021-39826 [HIGH] CWE-78 CVE-2021-39826: Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary command execution vu
Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary command execution vulnerability. An authenticated attacker could leverage this vulnerability to execute arbitrary commands. User interaction is required to abuse this vulnerability in that a user must open a maliciously crafted .epub file.
nvd
CVE-2017-3091P3HIGHCVSS 7.5≤ 4.5.52017-08-11
CVE-2017-3091 [HIGH] CWE-119 CVE-2017-3091: Adobe Digital Editions 4.5.4 and earlier versions 4.5.4 and earlier have an exploitable memory corru
Adobe Digital Editions 4.5.4 and earlier versions 4.5.4 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11279P3HIGHCVSS 7.5≤ 4.5.52017-08-11
CVE-2017-11279 [HIGH] CWE-416 CVE-2017-11279: Adobe Digital Editions 4.5.4 and earlier has an exploitable use after free vulnerability. Successful
Adobe Digital Editions 4.5.4 and earlier has an exploitable use after free vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11277P3HIGHCVSS 7.5≤ 4.5.52017-08-11
CVE-2017-11277 [HIGH] CWE-119 CVE-2017-11277: Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Success
Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11280P3HIGHCVSS 7.5≤ 4.5.52017-08-11
CVE-2017-11280 [HIGH] CWE-119 CVE-2017-11280: Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Success
Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11276P3HIGHCVSS 7.5≤ 4.5.52017-08-11
CVE-2017-11276 [HIGH] CWE-119 CVE-2017-11276: Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Success
Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11278P3HIGHCVSS 7.5≤ 4.5.52017-08-11
CVE-2017-11278 [HIGH] CWE-119 CVE-2017-11278: Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Success
Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2021-21100P3HIGHCVSS 7.8≤ 4.5.11.187245≥ unspecified, ≤ 4.5.11.1872452021-04-15
CVE-2021-21100 [HIGH] CWE-379 CVE-2021-21100: Adobe Digital Editions version 4.5.11.187245 (and earlier) is affected by a Privilege Escalation vul
Adobe Digital Editions version 4.5.11.187245 (and earlier) is affected by a Privilege Escalation vulnerability during installation. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary file system write in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a ma
nvd
CVE-2016-7889P3HIGHCVSS 7.5≤ 4.5.22016-12-15
CVE-2016-7889 [HIGH] CWE-200 CVE-2016-7889: Adobe Digital Editions versions 4.5.2 and earlier has an issue with parsing crafted XML entries that
Adobe Digital Editions versions 4.5.2 and earlier has an issue with parsing crafted XML entries that could lead to information disclosure.
nvd
CVE-2014-0494P3CRITICALCVSS 10.0v2.0.12014-01-23
CVE-2014-0494 [CRITICAL] CWE-119 CVE-2014-0494: Adobe Digital Editions 2.0.1 allows attackers to execute arbitrary code or cause a denial of service
Adobe Digital Editions 2.0.1 allows attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.
nvd
CVE-2020-3759P3HIGHCVSS 7.5≤ 4.5.102020-02-13
CVE-2020-3759 [HIGH] CVE-2020-3759: Adobe Digital Editions versions 4.5.10 and below have a buffer errors vulnerability. Successful expl
Adobe Digital Editions versions 4.5.10 and below have a buffer errors vulnerability. Successful exploitation could lead to information disclosure.
nvd