CVE-2024-41858

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Aug 14, 2024
Updated: Oct 15, 2024
CWE ID 190

Summary

CVE-2024-41858 is a newly disclosed vulnerability affecting Adobe InCopy versions 18.5.2 and earlier, as well as InCopy 19.4. This issue involves an Integer Overflow or Wraparound flaw that can be exploited to execute arbitrary code in the context of the current user. Exploitation requires the victim to open a maliciously crafted file, making this a user-interactive vulnerability. Successful exploitation could result in significant security risks, including unauthorized system access or data theft. Adobe is urging users to update to the latest versions of InCopy to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share