Adobe Framemaker vulnerabilities

106 known vulnerabilities affecting adobe/framemaker.

Total CVEs
106
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH84MEDIUM16LOW5

Vulnerabilities

Page 4 of 6
CVE-2022-28825HIGHCVSS 7.8≥ 2019, ≤ 2019.0.8≥ 2020, ≤ 2020.0.4+1 more2022-05-13
CVE-2022-28825 [HIGH] CWE-787 CVE-2022-28825: Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bo Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2022-28821HIGHCVSS 7.8≥ 2019, ≤ 2019.0.8≥ 2020, ≤ 2020.0.4+1 more2022-05-13
CVE-2022-28821 [HIGH] CWE-787 CVE-2022-28821: Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bo Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2022-28824HIGHCVSS 7.8≥ 2019, ≤ 2019.0.8≥ 2020, ≤ 2020.0.4+1 more2022-05-13
CVE-2022-28824 [HIGH] CWE-416 CVE-2022-28824: Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by a Use-after- Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by a Use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2022-28822HIGHCVSS 7.8≥ 2019, ≤ 2019.0.8≥ 2020, ≤ 2020.0.4+1 more2022-05-13
CVE-2022-28822 [HIGH] CWE-787 CVE-2022-28822: Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bo Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2022-28823HIGHCVSS 7.8≥ 2019, ≤ 2019.0.8≥ 2020, ≤ 2020.0.4+1 more2022-05-13
CVE-2022-28823 [HIGH] CWE-416 CVE-2022-28823: Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by a Use-after- Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by a Use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2022-28829HIGHCVSS 7.8≥ 2019, ≤ 2019.0.8≥ 2020, ≤ 2020.0.4+1 more2022-05-13
CVE-2022-28829 [HIGH] CWE-787 CVE-2022-28829: Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bo Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
cvelistv5nvd
CVE-2022-28830MEDIUMCVSS 5.5≥ 2019, ≤ 2019.0.8≥ 2020, ≤ 2020.0.4+1 more2022-05-13
CVE-2022-28830 [MEDIUM] CWE-125 CVE-2022-28830: Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bo Adobe Framemaker versions 2029u8 (and earlier) and 2020u4 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious fi
cvelistv5nvd
CVE-2021-39832HIGHCVSS 7.8≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39832 [HIGH] CWE-788 CVE-2021-39832: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by a memory corruption vulnerability due to insecure handling of a malicious PDF file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
cvelistv5nvd
CVE-2021-39831HIGHCVSS 7.8≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39831 [HIGH] CWE-787 CVE-2021-39831: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
cvelistv5nvd
CVE-2021-39830HIGHCVSS 7.8≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39830 [HIGH] CWE-788 CVE-2021-39830: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by a memory corruption vulnerability due to insecure handling of a malicious PDF file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
cvelistv5nvd
CVE-2021-39829HIGHCVSS 7.8≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39829 [HIGH] CWE-787 CVE-2021-39829: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
cvelistv5nvd
CVE-2021-39835MEDIUMCVSS 4.3≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39835 [MEDIUM] CWE-416 CVE-2021-39835: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by a use-after-free vulnerability in the processing of a malformed PDF file that could result in disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
cvelistv5nvd
CVE-2021-39862LOWCVSS 3.3≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39862 [LOW] CWE-125 CVE-2021-39862: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must
cvelistv5nvd
CVE-2021-40697LOWCVSS 3.3≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-40697 [LOW] CWE-125 CVE-2021-40697: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must
cvelistv5nvd
CVE-2021-39834LOWCVSS 3.3≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39834 [LOW] CWE-125 CVE-2021-39834: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must
cvelistv5nvd
CVE-2021-39865LOWCVSS 3.3≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39865 [LOW] CWE-125 CVE-2021-39865: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must
cvelistv5nvd
CVE-2021-39833LOWCVSS 3.3≤ 2019.0.8≥ 2020.0.1, ≤ 2020.0.2+1 more2021-09-29
CVE-2021-39833 [LOW] CWE-125 CVE-2021-39833: Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are af Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must
cvelistv5nvd
CVE-2021-28596HIGHCVSS 7.8≤ 2019.0.8v2020.0.1+1 more2021-08-23
CVE-2021-28596 [HIGH] CWE-787 CVE-2021-28596: Adobe Framemaker version 2020.0.1 (and earlier) and 2019.0.8 (and earlier) are affected by an Out-of Adobe Framemaker version 2020.0.1 (and earlier) and 2019.0.8 (and earlier) are affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction
cvelistv5nvd
CVE-2021-21056HIGHCVSS 7.8fixed in 2020.0.2≥ unspecified, ≤ 2020.0.12021-03-12
CVE-2021-21056 [HIGH] CWE-125 CVE-2021-21056: Adobe Framemaker version 2020.0.1 (and earlier) is affected by an Out-of-bounds Read vulnerability w Adobe Framemaker version 2020.0.1 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a
cvelistv5nvd
CVE-2020-9725HIGHCVSS 7.8≤ 2019.0.6≥ unspecified, ≤ 2019.0.62020-09-10
CVE-2020-9725 [HIGH] CWE-121 CVE-2020-9725: Adobe FrameMaker version 2019.0.6 (and earlier versions) lacks proper validation of the length of us Adobe FrameMaker version 2019.0.6 (and earlier versions) lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. This could be exploited to execute arbitrary code with the privileges of the current user. User interaction is required to exploit this vulnerability in that the target must open a
cvelistv5nvd