VulnerabilityModified
CVE-2019-7963
Adobe Bridge CC version 9.0.2 and earlier versions have an out of bound read vulnerability.
MEDIUM 6.5EPSS 2.88%
Does this matter?
Lower severity and a low EPSS score (2.88%). Track it; it rarely justifies an emergency change on its own.
Description
Adobe Bridge CC version 9.0.2 and earlier versions have an out of bound read vulnerability. Successful exploitation could lead to Information Disclosure in the context of the current user.
- CVSS 3.0
- 6.5 MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
- EPSS
- 2.88% probability · 86th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-125
- Affected
- adobe/bridge cc
- Source
- psirt@adobe.com
References
- https://helpx.adobe.com/security/products/bridge/apsb19-37.htmlPatch, Vendor Advisory
- https://helpx.adobe.com/security/products/bridge/apsb19-37.htmlPatch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.