CVE-2021-21070: Privilege Escalation Vulnerability in Adobe RoboHelp
Published Apr 19, 2021
·Updated
Adobe Robohelp version 2020.0.3 (and earlier) is affected by an uncontrolled search path element vulnerability that could lead to privilege escalation. An attacker with admin permissions to write to the file system could leverage this vulnerability to escalate privileges.
Affected Software
2 affected components
Adobe RoboHelp<2020.0.4
Microsoft Windows
Remediation
Event History
Apr 19, 2021
CVE Published
via MITRE·12:28 PM
Data Sourced
via MITRE·12:28 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-21070?
CVE-2021-21070 has a medium severity level due to its potential for privilege escalation.
2
How do I fix CVE-2021-21070?
To remediate CVE-2021-21070, update Adobe RoboHelp to version 2020.0.4 or later.
3
Who is affected by CVE-2021-21070?
CVE-2021-21070 affects users of Adobe RoboHelp version 2020.0.3 and earlier.
4
What types of attacks can exploit CVE-2021-21070?
CVE-2021-21070 can be exploited by an attacker with admin permissions to elevate their privileges.
5
What is the nature of the vulnerability in CVE-2021-21070?
CVE-2021-21070 is an uncontrolled search path element vulnerability leading to privilege escalation.