CVE-2021-21068: Adobe Creative Cloud installer arbitrary file overwrite vulnerability
Published Mar 12, 2021
·Updated
Adobe Creative Cloud Desktop Application version 5.3 (and earlier) is affected by a file handling vulnerability that could allow an attacker to cause arbitrary file overwriting. Exploitation of this issue requires physical access and user interaction.
Affected Software
3 affected components
Adobe Creative Cloud Desktop Application<=5.3
Apple macOS
Microsoft Windows
Event History
Mar 12, 2021
CVE Published
via MITRE·06:12 PM
Data Sourced
via MITRE·06:12 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for Adobe Creative Cloud Desktop Application?
The vulnerability ID for Adobe Creative Cloud Desktop Application is CVE-2021-21068.
2
What is the severity of CVE-2021-21068?
The severity of CVE-2021-21068 is medium with a CVSS score of 6.1.
3
Which versions of Adobe Creative Cloud Desktop Application are affected by CVE-2021-21068?
Adobe Creative Cloud Desktop Application version 5.3 and earlier are affected by CVE-2021-21068.
4
What is the impact of CVE-2021-21068?
CVE-2021-21068 could allow an attacker to cause arbitrary file overwriting if they have physical access and user interaction.
5
How can I find more information about CVE-2021-21068?
You can find more information about CVE-2021-21068 in the Adobe Security Bulletin APSB21-18.