CVE-2020-9668

Adobe Genuine Service version 6.6 (and earlier) is affected by an Improper Access control vulnerability when handling symbolic links. An unauthenticated attacker could exploit this to elevate privileges in the context of the current user.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:adobe:genuine_service:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

26 Jul 2022, 10:05

Type Values Removed Values Added
CWE CWE-284 NVD-CWE-Other

08 Sep 2021, 17:23

Type Values Removed Values Added
CPE cpe:2.3:o:apple:mac_os:-:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*

26 Apr 2021, 19:32

Type Values Removed Values Added
CPE cpe:2.3:a:adobe:genuine_service:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os:-:*:*:*:*:*:*:*
References (MISC) https://helpx.adobe.com/security/products/integrity_service/apsb20-42.html - (MISC) https://helpx.adobe.com/security/products/integrity_service/apsb20-42.html - Vendor Advisory
CVSS v2 : unknown
v3 : 8.2
v2 : 6.8
v3 : 7.8

16 Apr 2021, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-04-16 18:15

Updated : 2023-12-10 13:55


NVD link : CVE-2020-9668

Mitre link : CVE-2020-9668

CVE.ORG link : CVE-2020-9668


JSON object : View

Products Affected

adobe

  • genuine_service

apple

  • macos

microsoft

  • windows
CWE
NVD-CWE-Other CWE-284

Improper Access Control