ZDI-25-308: Adobe Dreamweaver V8 Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adobe Dreamweaver. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-30310.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-25-308?
ZDI-25-308 has a CVSS rating that indicates a high severity level due to the potential for remote code execution.
How do I fix ZDI-25-308?
To fix ZDI-25-308, update your Adobe Dreamweaver to the latest version that addresses this vulnerability.
What are the risks associated with ZDI-25-308?
The risks include the possibility of remote attackers executing arbitrary code on vulnerable installations if user interaction occurs.
Which versions of Adobe Dreamweaver are affected by ZDI-25-308?
ZDI-25-308 affects Adobe Dreamweaver 2021 installations.
Is user interaction required to exploit ZDI-25-308?
Yes, user interaction is required to exploit ZDI-25-308, as the target must visit a malicious page or open a malicious file.