CVE-2025-27203: Adobe Connect | Deserialization of Untrusted Data (CWE-502)
Published Jul 8, 2025
·Updated
Adobe Connect versions 24.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lead to arbitrary code execution by an attacker. Exploitation of this issue does require user interaction and scope is changed.
Affected Software
2 affected components
Adobe Connect<24.0
Adobe Connect Desktop Application Windows<2025.5.5
Event History
Jul 8, 2025
CVE Published
via MITRE·09:25 PM
Data Sourced
via MITRE·09:25 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-27203?
CVE-2025-27203 is rated as a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2025-27203?
To mitigate CVE-2025-27203, update Adobe Connect to version 25.0 or later.
3
What is the impact of CVE-2025-27203?
CVE-2025-27203 can lead to arbitrary code execution if exploited, allowing attackers to run malicious code.
4
Who is affected by CVE-2025-27203?
All users running Adobe Connect versions 24.0 and earlier are susceptible to CVE-2025-27203.
5
Does CVE-2025-27203 require user interaction to exploit?
Yes, exploitation of CVE-2025-27203 does require user interaction.