First published: Tue Jul 14 2020(Updated: )
Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An authenticated attacker with admin privileges could plant custom binaries and execute them with System permissions. Exploitation of this issue requires user interaction.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Genuine Integrity Service | <=6.6 | |
macOS | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9667 is classified as a high severity vulnerability due to its potential for exploitation by authenticated attackers with administrative privileges.
To mitigate CVE-2020-9667, ensure that you upgrade Adobe Genuine Service to version 6.7 or later.
CVE-2020-9667 affects users of Adobe Genuine Service version 6.6 and earlier.
CVE-2020-9667 is an Uncontrolled Search Path Element vulnerability.
Exploitation of CVE-2020-9667 could allow an authenticated attacker to execute custom binaries with System permissions.