SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2019-7136

Adobe Bridge CC versions 9.0.2 have an use after free vulnerability.

MEDIUM 6.5EPSS 3.95%

Does this matter?

Lower severity and a low EPSS score (3.95%). Track it; it rarely justifies an emergency change on its own.

Description

Adobe Bridge CC versions 9.0.2 have an use after free vulnerability. Successful exploitation could lead to information disclosure.

CVSS 3.0
6.5 MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS
3.95% probability · 90th percentile
CISA KEV
Not listed
Weakness
CWE-416
Affected
adobe/bridge cc
Source
psirt@adobe.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.