CVE-2021-36061

Adobe Connect version 11.2.2 (and earlier) is affected by a secure design principles violation vulnerability via the 'pbMode' parameter. An unauthenticated attacker could leverage this vulnerability to edit or delete recordings on the Connect environment. Exploitation of this issue requires user interaction in that a victim must publish a link of a Connect recording.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:adobe:connect:*:*:*:*:*:*:*:*

History

09 Sep 2021, 14:13

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 5.4
v2 : 4.3
v3 : 5.4
References (MISC) https://helpx.adobe.com/security/products/connect/apsb21-66.html - (MISC) https://helpx.adobe.com/security/products/connect/apsb21-66.html - Patch, Vendor Advisory
CPE cpe:2.3:a:adobe:connect:*:*:*:*:*:*:*:*

01 Sep 2021, 15:19

Type Values Removed Values Added
New CVE

Information

Published : 2021-09-01 15:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-36061

Mitre link : CVE-2021-36061

CVE.ORG link : CVE-2021-36061


JSON object : View

Products Affected

adobe

  • connect
CWE
CWE-657

Violation of Secure Design Principles