CVE-2018-5003: High severity adobe creative cloud vulnerability

Published Aug 29, 2018
·
Updated

Adobe Creative Cloud Desktop Application before 4.5.5.342 (installer) has an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.

Affected Software

2 affected components
Adobe Creative Cloud<4.5.5.342
Microsoft Windows

Event History

Aug 29, 2018
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionWeakness
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2018-5003?

CVE-2018-5003 has a medium severity level as it allows for privilege escalation through DLL hijacking.

2

How do I fix CVE-2018-5003?

To fix CVE-2018-5003, update Adobe Creative Cloud Desktop Application to version 4.5.5.342 or later.

3

What types of systems are affected by CVE-2018-5003?

CVE-2018-5003 affects the Adobe Creative Cloud Desktop Application prior to version 4.5.5.342 on Microsoft Windows systems.

4

What is DLL hijacking in the context of CVE-2018-5003?

DLL hijacking in CVE-2018-5003 refers to the vulnerability where an insecure library loading mechanism allows an attacker to execute arbitrary code.

5

Can CVE-2018-5003 be exploited remotely?

CVE-2018-5003 requires local access to exploit, as it involves running the vulnerable Adobe software on a targeted machine.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203