Adobe Incopy vulnerabilities
65 known vulnerabilities affecting adobe/incopy.
Total CVEs
65
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH58MEDIUM7
Vulnerabilities
Page 4 of 4
CVE-2022-38407P4MEDIUMCVSS 5.5≥ 16.0, ≤ 16.4.2≥ 17.0, ≤ 17.3+1 more2022-09-16
CVE-2022-38407 [MEDIUM] CWE-125 CVE-2022-38407: Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by an out-of-bounds re
Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2022-34252P4MEDIUMCVSS 5.5≤ 16.4.1≥ 17.0, ≤ 17.2+1 more2022-07-15
CVE-2022-34252 [MEDIUM] CWE-125 CVE-2022-34252: Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds r
Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-21598P4MEDIUMCVSS 5.5≥ 17.0, ≤ 17.4v18.0+1 more2023-01-13
CVE-2023-21598 [MEDIUM] CWE-416 CVE-2023-21598: Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by a Use After Free vulner
Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-21599P4MEDIUMCVSS 5.5≥ 17.0, ≤ 17.4v18.0+1 more2023-01-13
CVE-2023-21599 [MEDIUM] CWE-125 CVE-2023-21599: Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read v
Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2021-43016P4MEDIUMCVSS 5.5≤ 16.4≥ unspecified, ≤ 16.42021-11-22
CVE-2021-43016 [MEDIUM] CWE-476 CVE-2021-43016: Adobe InCopy version 16.4 (and earlier) is affected by a Null pointer dereference vulnerability when
Adobe InCopy version 16.4 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must
nvd
← Previous4 / 4