CVE-2021-21102: Adobe Illustrator DOCX file parsing directory traversal vulnerability could lead to remote code execution
Adobe Illustrator version 25.2 (and earlier) is affected by a Path Traversal vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21102?
CVE-2021-21102 is rated as a critical vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2021-21102?
To fix CVE-2021-21102, you should update Adobe Illustrator to version 25.3 or later.
What type of vulnerability is CVE-2021-21102?
CVE-2021-21102 is a Path Traversal vulnerability that affects Adobe Illustrator.
Can CVE-2021-21102 be exploited remotely?
CVE-2021-21102 can be exploited by an unauthenticated attacker through specially crafted files.
Who is affected by CVE-2021-21102?
Users of Adobe Illustrator version 25.2 and earlier are affected by CVE-2021-21102.