CVE-2020-24423: Uncontrolled Search Path in Adobe Media Encoder for Windows
Adobe Media Encoder version 14.4 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-24423.
What is the affected software for this vulnerability?
The affected software for this vulnerability is Adobe Media Encoder version 14.4 (and earlier) for Windows.
What is the severity rating of CVE-2020-24423?
The severity rating of CVE-2020-24423 is high with a severity value of 7.8.
How can this vulnerability be exploited?
Exploitation of this vulnerability requires user interaction in that a victim must open a malicious file.
Is there a fix available for CVE-2020-24423?
Yes, please refer to Adobe's security advisory at https://helpx.adobe.com/security/products/media-encoder/apsb20-65.html for information on available fixes.