CVE-2025-47128: Adobe Framemaker | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published Jul 8, 2025
·Updated
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
4 affected components
Adobe FrameMaker<2022.6
All of the following
Any of the following
Adobe FrameMaker<2020.9
Adobe FrameMaker>=2022<2022.7
Microsoft Windows
Event History
Jul 8, 2025
CVE Published
via MITRE·10:11 PM
Data Sourced
via MITRE·10:11 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-47128?
CVE-2025-47128 has a critical severity rating due to its potential for arbitrary code execution.
2
How do I fix CVE-2025-47128?
To mitigate CVE-2025-47128, users should update Adobe Framemaker to the latest version beyond 2022.6.
3
What versions of Adobe Framemaker are affected by CVE-2025-47128?
Adobe Framemaker versions 2020.8, 2022.6, and earlier are vulnerable to CVE-2025-47128.
4
What type of vulnerability is CVE-2025-47128?
CVE-2025-47128 is classified as an Integer Underflow vulnerability.
5
What is required for exploitation of CVE-2025-47128?
Exploitation of CVE-2025-47128 requires user interaction from a victim.