First published: Tue Sep 14 2021(Updated: )
Adobe Genuine Service versions 7.3 (and earlier) are affected by a privilege escalation vulnerability in the AGSService installer. An authenticated attacker could leverage this vulnerability to achieve read / write privileges to execute arbitrary code. User interaction is required to abuse this vulnerability.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Genuine Service | <=7.3 | |
Apple macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Adobe Genuine Service vulnerability is CVE-2021-40708.
The severity of CVE-2021-40708 is high with a severity value of 7.3.
The affected software for CVE-2021-40708 is Adobe Genuine Service versions 7.3 and earlier.
CVE-2021-40708 is a privilege escalation vulnerability in the AGSService installer of Adobe Genuine Service versions 7.3 and earlier, allowing an authenticated attacker to achieve read/write privileges and execute arbitrary code.
An attacker can exploit CVE-2021-40708 by leveraging the vulnerability in the AGSService installer of Adobe Genuine Service versions 7.3 and earlier, with user interaction required to abuse the vulnerability.