First published: Fri Apr 16 2021(Updated: )
Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An authenticated attacker could exploit this to rewrite the file of the administrator, which may lead to elevated permissions. Exploitation of this issue requires user interaction.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Genuine Integrity Service | <=6.6 | |
macOS | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9681 has a high severity rating due to its potential to allow an authenticated attacker to gain elevated permissions.
To mitigate CVE-2020-9681, users should upgrade to Adobe Genuine Service version 6.7 or later.
CVE-2020-9681 affects users of Adobe Genuine Service version 6.6 and earlier.
CVE-2020-9681 is classified as an Uncontrolled Search Path Element vulnerability.
Exploitation of CVE-2020-9681 could allow an authenticated attacker to rewrite the files of the administrator, potentially leading to elevated permissions.