漏洞标题
Adobe Digital Editions 命令执行漏洞
漏洞描述信息
Adobe Digital Editions命令执行漏洞
CVSS信息
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
漏洞类别
N/A
漏洞标题
Adobe Digital Editions Command Execution Vulnerability
漏洞描述信息
Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary command execution vulnerability. An authenticated attacker could leverage this vulnerability to execute arbitrary commands. User interaction is required to abuse this vulnerability in that a user must open a maliciously crafted .epub file.
CVSS信息
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
漏洞类别
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
漏洞标题
Adobe Digital Editions 操作系统命令注入漏洞
漏洞描述信息
Adobe Digital Editions(DE)是美国奥多比(Adobe)公司的一套电子书阅读管理软件。该软件支持打开、阅读和管理PDF、XML、Flash等格式的文件。 Adobe Digital Editions存在操作系统命令注入漏洞,攻击者可利用该漏洞执行任意代码
CVSS信息
N/A
漏洞类别
授权问题